peter bassill · operator
$ cve CVE-2022-0492 JSON

CVE-2022-0492 KEV

7.8
HIGH · CVSS 3.1 · EPSS 5.5% (pctl 93)

Patch first

On CISA KEV — known exploited in the wild, due 2026-06-05.

Description

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS5.53% — more likely to be exploited than 93% of all CVEs
WeaknessCWE-287
On CISA KEVyes — remediate by 2026-06-05
Public exploitnone known
Published2022-03-03
Last modified2026-06-17

CISA KEV

NameLinux Kernel Improper Authentication Vulnerability
Added2026-06-02
Due2026-06-05
Vendor / productLinux / Kernel
Ransomware usenone reported

Affected (33)

VendorProduct
canonicalubuntu linux
debiandebian linux
fedoraprojectfedora
linuxlinux kernel
netappbootstrap os
netapph300s
netapph300s firmware
netapph410c
netapph410c firmware
netapph410s
netapph410s firmware
netapph500s
netapph500s firmware
netapph700s
netapph700s firmware
netapphci compute node
netappsolidfire \& hci management node
netappsolidfire\, enterprise sds \& hci storage node
redhatcodeready linux builder
redhatcodeready linux builder for power little endian
redhatenterprise linux
redhatenterprise linux eus
redhatenterprise linux for ibm z systems
redhatenterprise linux for ibm z systems eus
redhatenterprise linux for power little endian
redhatenterprise linux for power little endian eus
redhatenterprise linux for real time for nfv tus
redhatenterprise linux for real time tus
redhatenterprise linux server aus
redhatenterprise linux server for power little endian update services for sap solutions
redhatenterprise linux server tus
redhatenterprise linux server update services for sap solutions
redhatvirtualization host

References

→ the Explorer  ·  watch your stack  ·  NVD