Amazon Linux 2 : kernel (ALAS-2022-1903)

high Nessus Plugin ID 168676

Synopsis

The remote Amazon Linux 2 host is missing a security update.

Description

The version of kernel installed on the remote host is prior to 4.14.301-224.520. It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2-2022-1903 advisory.

A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function ipv6_renew_options of the component IPv6 Handler. The manipulation leads to memory leak. The attack can be launched remotely. It is recommended to apply a patch to fix this issue.
The identifier VDB-211021 was assigned to this vulnerability. (CVE-2022-3524)

A use-after-free flaw was found in the Linux kernel's implementation of logical link control and adaptation protocol (L2CAP), part of the Bluetooth stack in the l2cap_connect and l2cap_le_connect_req functions. An attacker with physical access within the range of standard Bluetooth transmission could execute code leaking kernel memory via Bluetooth if within proximity of the victim. (CVE-2022-42896)

In the Linux kernel, the following vulnerability has been resolved:

iommu/vt-d: Fix PCI device refcount leak in dmar_dev_scope_init() (CVE-2022-49002)

In the Linux kernel, the following vulnerability has been resolved:

nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry() (CVE-2022-49007)

In the Linux kernel, the following vulnerability has been resolved:

net: hsr: Fix potential use-after-free (CVE-2022-49015)

In the Linux kernel, the following vulnerability has been resolved:

net: phy: fix null-ptr-deref while probe() failed (CVE-2022-49021)

In the Linux kernel, the following vulnerability has been resolved:

btrfs: qgroup: fix sleep from invalid context bug in btrfs_qgroup_inherit() (CVE-2022-49033)

In the Linux kernel, the following vulnerability has been resolved:

ntfs: check overflow when iterating ATTR_RECORDs (CVE-2022-49762)

In the Linux kernel, the following vulnerability has been resolved:

ntfs: fix use-after-free in ntfs_attr_find() (CVE-2022-49763)

In the Linux kernel, the following vulnerability has been resolved:

gfs2: Check sb_bsize_shift after reading superblock (CVE-2022-49769)

In the Linux kernel, the following vulnerability has been resolved:

dm ioctl: fix misbehavior if list_versions races with module loading (CVE-2022-49771)

In the Linux kernel, the following vulnerability has been resolved:

macvlan: enforce a consistent minimal mtu (CVE-2022-49776)

In the Linux kernel, the following vulnerability has been resolved:

mmc: sdhci-pci: Fix possible memory leak caused by missing pci_dev_put() (CVE-2022-49787)

In the Linux kernel, the following vulnerability has been resolved:

misc/vmw_vmci: fix an infoleak in vmci_host_do_receive_datagram() (CVE-2022-49788)

In the Linux kernel, the following vulnerability has been resolved:

ftrace: Fix null pointer dereference in ftrace_add_mod() (CVE-2022-49802)

In the Linux kernel, the following vulnerability has been resolved:

drbd: use after free in drbd_create_device() (CVE-2022-49811)

In the Linux kernel, the following vulnerability has been resolved:

kcm: close race conditions on sk_receive_queue (CVE-2022-49814)

In the Linux kernel, the following vulnerability has been resolved:

pinctrl: devicetree: fix null pointer dereferencing in pinctrl_dt_to_map (CVE-2022-49832)

In the Linux kernel, the following vulnerability has been resolved:

nilfs2: fix use-after-free bug of ns_writer on remount (CVE-2022-49834)

In the Linux kernel, the following vulnerability has been resolved:

bpf, test_run: Fix alignment problem in bpf_prog_test_run_skb() (CVE-2022-49840)

In the Linux kernel, the following vulnerability has been resolved:

ASoC: core: Fix use-after-free in snd_soc_exit() (CVE-2022-49842)

In the Linux kernel, the following vulnerability has been resolved:

udf: Fix a slab-out-of-bounds write bug in udf_find_entry() (CVE-2022-49846)

In the Linux kernel, the following vulnerability has been resolved:

nilfs2: fix deadlock in nilfs_count_free_blocks() (CVE-2022-49850)

In the Linux kernel, the following vulnerability has been resolved:

net: macvlan: fix memory leaks of macvlan_common_newlink (CVE-2022-49853)

In the Linux kernel, the following vulnerability has been resolved:

tipc: fix the msg->req tlv len check in tipc_nl_compat_name_table_dump_header (CVE-2022-49862)

In the Linux kernel, the following vulnerability has been resolved:

ipv6: addrlabel: fix infoleak when sending struct ifaddrlblmsg to network (CVE-2022-49865)

In the Linux kernel, the following vulnerability has been resolved:

capabilities: fix undefined behavior in bit shift for CAP_TO_MASK (CVE-2022-49870)

In the Linux kernel, the following vulnerability has been resolved:

net: gso: fix panic on frag_list with mixed head alloc types (CVE-2022-49872)

In the Linux kernel, the following vulnerability has been resolved:

HID: hyperv: fix possible memory leak in mousevsc_probe() (CVE-2022-49874)

In the Linux kernel 6.0.8, there is an out-of-bounds read in ntfs_attr_find in fs/ntfs/attrib.c.
(CVE-2023-26607)

Tenable has extracted the preceding description block directly from the tested product security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Run 'yum update kernel' to update your system.

See Also

https://alas.aws.amazon.com//AL2/ALAS2-2022-1903.html

https://alas.aws.amazon.com/faqs.html

https://explore.alas.aws.amazon.com/CVE-2022-3524.html

https://explore.alas.aws.amazon.com/CVE-2022-42896.html

https://explore.alas.aws.amazon.com/CVE-2022-49002.html

https://explore.alas.aws.amazon.com/CVE-2022-49007.html

https://explore.alas.aws.amazon.com/CVE-2022-49015.html

https://explore.alas.aws.amazon.com/CVE-2022-49021.html

https://explore.alas.aws.amazon.com/CVE-2022-49033.html

https://explore.alas.aws.amazon.com/CVE-2022-49762.html

https://explore.alas.aws.amazon.com/CVE-2022-49763.html

https://explore.alas.aws.amazon.com/CVE-2022-49769.html

https://explore.alas.aws.amazon.com/CVE-2022-49771.html

https://explore.alas.aws.amazon.com/CVE-2022-49776.html

https://explore.alas.aws.amazon.com/CVE-2022-49787.html

https://explore.alas.aws.amazon.com/CVE-2022-49788.html

https://explore.alas.aws.amazon.com/CVE-2022-49802.html

https://explore.alas.aws.amazon.com/CVE-2022-49811.html

https://explore.alas.aws.amazon.com/CVE-2022-49814.html

https://explore.alas.aws.amazon.com/CVE-2022-49832.html

https://explore.alas.aws.amazon.com/CVE-2022-49834.html

https://explore.alas.aws.amazon.com/CVE-2022-49840.html

https://explore.alas.aws.amazon.com/CVE-2022-49842.html

https://explore.alas.aws.amazon.com/CVE-2022-49846.html

https://explore.alas.aws.amazon.com/CVE-2022-49850.html

https://explore.alas.aws.amazon.com/CVE-2022-49853.html

https://explore.alas.aws.amazon.com/CVE-2022-49862.html

https://explore.alas.aws.amazon.com/CVE-2022-49865.html

https://explore.alas.aws.amazon.com/CVE-2022-49870.html

https://explore.alas.aws.amazon.com/CVE-2022-49872.html

https://explore.alas.aws.amazon.com/CVE-2022-49874.html

https://explore.alas.aws.amazon.com/CVE-2023-26607.html

Plugin Details

Severity: High

ID: 168676

File Name: al2_ALAS-2022-1903.nasl

Version: 1.13

Type: local

Agent: unix

Published: 12/13/2022

Updated: 8/5/2025

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: High

Base Score: 8.3

Temporal Score: 6.5

Vector: CVSS2#AV:A/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2022-42896

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.9

Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-livepatch-4.14.301-224.520, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:python-perf-debuginfo, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:kernel-debuginfo, p-cpe:/a:amazon:linux:kernel-headers, cpe:/o:amazon:linux:2, p-cpe:/a:amazon:linux:kernel-tools-devel, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:python-perf

Required KB Items: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 12/9/2022

Vulnerability Publication Date: 10/16/2022

Reference Information

CVE: CVE-2022-3524, CVE-2022-42896, CVE-2022-49002, CVE-2022-49007, CVE-2022-49015, CVE-2022-49021, CVE-2022-49033, CVE-2022-49762, CVE-2022-49763, CVE-2022-49769, CVE-2022-49771, CVE-2022-49776, CVE-2022-49787, CVE-2022-49788, CVE-2022-49802, CVE-2022-49811, CVE-2022-49814, CVE-2022-49832, CVE-2022-49834, CVE-2022-49840, CVE-2022-49842, CVE-2022-49846, CVE-2022-49850, CVE-2022-49853, CVE-2022-49862, CVE-2022-49865, CVE-2022-49870, CVE-2022-49872, CVE-2022-49874, CVE-2023-26607