CVE-2022-0995High· 7.8▾ Abyssal⚠ Exploited in the wildPoC availableAn out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a …
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 42.9 · likelihood 1.9 · exploitation 25
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 2 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 26.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
Federal remediation due Sep 9, 2026
6.3%
6.3% → 9.5%
4 GitHub repos · Metasploit ×1
Added to the CISA catalog on Aug 26, 2026. Federal remediation due Sep 9, 2026. View catalog ↗
An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.
linux_kernel >= 5.8, < 5.10.106linux_kernel >= 5.11, < 5.15.29linux_kernel >= 5.16, < 5.16.5linux_kernel = 5.17fedora = 35h300e_firmwareh300s_firmwareh410c_firmwareh410s_firmwareh500e_firmwareh500s_firmwareh610c_firmwareh610s_firmwareh615c_firmwareh700e_firmwareh700s_firmwareUpgrade past the affected range:
linux_kernel 5.16.5Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2023-6931High· 7.8A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escalation. A perf_event's read_size can overflow, leading to an heap out-of-bounds increme…
CVE-2021-4090High· 7.1An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel
CVE-2023-42753High· 7.0An array indexing vulnerability was found in the netfilter subsystem of the Linux kernel
CVE-2021-38166High· 7.8In kernel/bpf/hashtab.c in the Linux kernel through 5.13.8, there is an integer overflow and out-of-bounds write when many elements are placed in a single bucket
CVE-2023-4622High· 7.8A use-after-free vulnerability in the Linux kernel's af_unix component can be exploited to achieve local privilege escalation. The unix_stream_sendpage() function tries to add data to the last skb in the peer's recv queue without lock…
CVE-2022-32981High· 7.8An issue was discovered in the Linux kernel through 5.18.3 on powerpc 32-bit platforms