{"id":"MGASA-2022-0042","summary":"Updated kernel-linus packages fix security vulnerabilities","details":"This kernel-linus update is based on upstream 5.15.18 and fixes at least the\nfollowing security issues:\n\nA random memory access flaw was found in the Linux kernels GPU i915 kernel\ndriver functionality in the way a user may run malicious code on the GPU.\nThis flaw allows a local user to crash the system or escalate their\nprivileges on the system (CVE-2022-0330).\n\nA use-after-free flaw was found in the Linux kernels\nvmw_execbuf_copy_fence_user function in drivers/gpu/drm/vmwgfx/\nvmwgfx_execbuf.c in vmwgfx. This flaw allows a local attacker with user\nprivileges to cause a privilege escalation problem (CVE-2022-22942).\n\nFor other upstream fixes, see the referenced changelogs.\n","modified":"2026-04-16T04:41:16.102156975Z","published":"2022-02-01T15:26:02Z","upstream":["CVE-2022-0330","CVE-2022-22942"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2022-0042.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=29961"},{"type":"WEB","url":"https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.17"},{"type":"WEB","url":"https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.18"}],"affected":[{"package":{"name":"kernel-linus","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/kernel-linus?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.15.18-1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2022-0042.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}