Junglewise Threat Intelligence

CVE-2022-0995: Linux Kernel out-of-bounds write vulnerability

CVE-2022-0995 · Severity: critical · Exploited in the wild · Published 2026-08-26

Executive brief

The Linux Kernel, which forms the core of Linux-based operating systems, contains a memory corruption flaw that allows an attacker with local access to crash the system or escalate their privileges to administrator level. This vulnerability has already been actively exploited by threat actors in real-world attacks, posing an immediate risk to all affected Linux systems.

Technical details

This vulnerability is an out-of-bounds write flaw in the Linux Kernel that can be triggered by a local user without elevated privileges. The root cause involves improper bounds checking in a kernel memory operation, allowing an attacker to write data outside the intended buffer boundaries. The attack requires local system access but does not require authentication or special permissions to trigger. Successful exploitation enables privilege escalation to root/kernel-level access or can be weaponized to cause a kernel panic and denial of service. The vulnerability has been observed in active exploitation campaigns. Patches have been released as part of kernel security updates.

Affected products

  • Linux Kernel

Timeline

  • 2022: disclosed: CVE-2022-0995 public disclosure
  • exploited: Known to be actively exploited in the wild

Related threats