Improper Control of Dynamically-Managed Code Resources in Linux kernel - CVE-2022-25265

 

Improper Control of Dynamically-Managed Code Resources in Linux kernel - CVE-2022-25265

Published: May 16, 2023 / Updated: June 14, 2023


Vulnerability identifier: #VU76191
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-25265
CWE-ID: CWE-913
Exploitation vector: Local access
Exploit availability: Public exploit is available

Vulnerability details

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to an error in Linux kernel due to certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20). This can cause execution of bytes located in supposedly non-executable regions of a file.


Affected software

Linux kernel
Anolis OS
Red Hat Enterprise Linux for Real Time for NFV
Red Hat Enterprise Linux for Real Time
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat CodeReady Linux Builder for x86_64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for ARM 64
Red Hat Enterprise Linux for x86_64 - Extended Update Support
Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support
Red Hat Enterprise Linux Server - AUS
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support
Red Hat Advanced Cluster Management for Kubernetes
OpenShift Logging
Session Smart Router
Red Hat OpenShift Container Platform
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
kernel (Red Hat package)
kernel-rt (Red Hat package)
kernel-devel
kernel-debug-devel
kernel-headers
kernel-modules
kernel-modules-extra
kernel-tools
kernel-tools-libs
perf
python3-perf
kernel-abi-stablelists
kernel-doc
kernel-debug-modules-extra
kernel-debug-modules
kernel-debug-core
kernel-debug
kernel-cross-headers
kernel-core
kernel
bpftool
IBM Cloud Pak for Watson AIOps

How to mitigate CVE-2022-25265

Install updates from vendor's website.

Red Hat Advanced Cluster Management for Kubernetes - addressed in versions 2.5.9, 2.6.6
Red Hat OpenShift Container Platform - update to 4.13.33
OpenShift Logging - update to 5.7.2
IBM Cloud Pak for Watson AIOps - update to 4.1
kernel (Red Hat package) - addressed in versions 4.18.0-372.91.1.el8_6, 4.18.0-477.10.1.el8_8
kernel-rt (Red Hat package) - update to 4.18.0-477.10.1.rt7.274.el8_8
kernel-devel - update to 4.18.0-477.10.1.0.1
kernel-debug-devel - update to 4.18.0-477.10.1.0.1
kernel-headers - update to 4.18.0-477.10.1.0.1
kernel-modules - update to 4.18.0-477.10.1.0.1
kernel-modules-extra - update to 4.18.0-477.10.1.0.1
kernel-tools - update to 4.18.0-477.10.1.0.1
kernel-tools-libs - update to 4.18.0-477.10.1.0.1
perf - update to 4.18.0-477.10.1.0.1
python3-perf - update to 4.18.0-477.10.1.0.1
kernel-abi-stablelists - update to 4.18.0-477.10.1.0.1
kernel-doc - update to 4.18.0-477.10.1.0.1
kernel-debug-modules-extra - update to 4.18.0-477.10.1.0.1
kernel-debug-modules - update to 4.18.0-477.10.1.0.1
kernel-debug-core - update to 4.18.0-477.10.1.0.1
kernel-debug - update to 4.18.0-477.10.1.0.1
kernel-cross-headers - update to 4.18.0-477.10.1.0.1
kernel-core - update to 4.18.0-477.10.1.0.1
kernel - update to 4.18.0-477.10.1.0.1
bpftool - update to 4.18.0-477.10.1.0.1
Session Smart Router - addressed in versions 6.2.3-r2, 6.2.10, 6.3.7

Links to Public Exploits and PoC-codes

External References

Related Security Bulletins