KEVIntel
8.4
CVSS
High

CVE-2022-0185

PUBLISHED

A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel...

Exploited in the wild Low complexity No user interaction
Vendor
Linux
Product
kernel
Published
Feb 11, 2022
EPSS

Description

A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled, otherwise needs namespaced CAP_SYS_ADMIN privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.

linux cisa nessus_scanner

CVSS scores

CVSS v3.1 8.4 High

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2.0 7.2

AV:L/AC:L/Au:N/C:C/I:C/A:C

Exploitation status

Exploited in the wild

Recorded 2024-08-21 00:00:00 UTC · Source

SSVC decision points

Exploitation
active
Automatable
No
Technical impact
total

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
CISA Aug 21, 2024

Scanner integrations

Scanner Reference Detected
Nessus https://www.tenable.com/plugins/nessus/236676 Jun 02, 2025

Potential proof of concepts

These PoCs are unverified and could contain malware. Use at your own risk.

dcheng69/CVE-2022-0185-Case-Study

github · Created 2024-04-15 02:42:43 UTC · 3 stars

featherL/CVE-2022-0185-exploit

github · Created 2022-04-14 10:46:04 UTC · 3 stars

CVE-2022-0185 exploit

veritas501/CVE-2022-0185-PipeVersion

github · Created 2022-04-05 07:48:35 UTC · 16 stars

CVE-2022-0185 exploit rewritten with pipe primitive

chenaotian/CVE-2022-0185

github · Created 2022-02-18 09:27:34 UTC · 37 stars

CVE-2022-0185 POC and Docker and Analysis write up

Crusaders-of-Rust/CVE-2022-0185

github · Created 2022-01-19 06:19:38 UTC · 369 stars

CVE-2022-0185

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel

  • Detected by Nessus