{"id":"CVE-2022-1199","title":"A flaw was found in the Linux kernel","summary":"A flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulting in a null-ptr-deref vulnerability and a use-after-free vulnerability.","severity":"high","cvss":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","cwe":["CWE-416","CWE-476"],"vendor":"netapp","product":"active_iq_unified_manager","affected":["linux_kernel < 4.14.277","linux_kernel >= 4.15, < 4.19.240","linux_kernel >= 4.20, < 5.4.190","linux_kernel >= 5.5, < 5.10.112","linux_kernel >= 5.11, < 5.15.35","enterprise_linux = 6.0","active_iq_unified_manager","h300s_firmware","h500s_firmware","h700s_firmware","h410s_firmware","h410c_firmware"],"patched":["linux_kernel 5.15.35"],"published":"2022-08-29","updated":"2026-09-11","sourceUpdated":"2026-09-11T16:18:07.107","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2022-1199","references":[{"url":"https://access.redhat.com/security/cve/CVE-2022-1199","label":"secalert@redhat.com"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2070694","label":"secalert@redhat.com"},{"url":"https://github.com/torvalds/linux/commit/4e0f718daf97d47cf7dec122da1be970f145c809","label":"secalert@redhat.com"},{"url":"https://github.com/torvalds/linux/commit/71171ac8eb34ce7fe6b3267dce27c313ab3cb3ac","label":"secalert@redhat.com"},{"url":"https://github.com/torvalds/linux/commit/7ec02f5ac8a5be5a3f20611731243dc5e1d9ba10","label":"secalert@redhat.com"},{"url":"https://security.netapp.com/advisory/ntap-20221228-0006/","label":"secalert@redhat.com"},{"url":"https://www.openwall.com/lists/oss-security/2022/04/02/5","label":"secalert@redhat.com"},{"url":"https://access.redhat.com/security/cve/CVE-2022-1199","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2070694","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/torvalds/linux/commit/4e0f718daf97d47cf7dec122da1be970f145c809","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/torvalds/linux/commit/71171ac8eb34ce7fe6b3267dce27c313ab3cb3ac","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/torvalds/linux/commit/7ec02f5ac8a5be5a3f20611731243dc5e1d9ba10","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://security.netapp.com/advisory/ntap-20221228-0006/","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.openwall.com/lists/oss-security/2022/04/02/5","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"yes","technicalImpact":"partial","timestamp":"2025-04-23T13:27:00.773297Z"},"ingestedAt":"2026-09-14T14:00:55.275Z","epss":0.02033,"epssPercentile":0.80213,"slug":"CVE-2022-1199","body":"## Overview\n\nA flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulting in a null-ptr-deref vulnerability and a use-after-free vulnerability.\n\n## Affected\n\n- `linux_kernel < 4.14.277`\n- `linux_kernel >= 4.15, < 4.19.240`\n- `linux_kernel >= 4.20, < 5.4.190`\n- `linux_kernel >= 5.5, < 5.10.112`\n- `linux_kernel >= 5.11, < 5.15.35`\n- `enterprise_linux = 6.0`\n- `active_iq_unified_manager`\n- `h300s_firmware`\n- `h500s_firmware`\n- `h700s_firmware`\n- `h410s_firmware`\n- `h410c_firmware`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `linux_kernel 5.15.35`","depth":"twilight","depthScore":42,"depthScoreParts":{"impact":41.3,"likelihood":0.4,"exploitation":0,"ransomware":0},"changes":[]}