vulnerability
Huawei EulerOS: CVE-2022-20141: kernel security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:M/Au:N/C:C/I:C/A:C) | Jun 15, 2022 | Oct 28, 2022 | Apr 1, 2026 |
Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:C)
Published
Jun 15, 2022
Added
Oct 28, 2022
Modified
Apr 1, 2026
Description
In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege when opening and closing inet sockets with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-112551163References: Upstream kernel
Solutions
huawei-euleros-2_0_sp3-upgrade-kernelhuawei-euleros-2_0_sp3-upgrade-kernel-debuginfohuawei-euleros-2_0_sp3-upgrade-kernel-debuginfo-common-x86_64huawei-euleros-2_0_sp3-upgrade-kernel-develhuawei-euleros-2_0_sp3-upgrade-kernel-headershuawei-euleros-2_0_sp3-upgrade-kernel-toolshuawei-euleros-2_0_sp3-upgrade-kernel-tools-libshuawei-euleros-2_0_sp3-upgrade-perfhuawei-euleros-2_0_sp3-upgrade-python-perf
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.