CVE-2022-0492Active Exploitation(canonical / bootstrap_os)

CRITICALCVSS 7.8 · HIGHCISA KEV

Exploitation observed; activity peaked at 6 mentions and remains active

Immediate actions

  • Patch canonical bootstrap_os systems immediately
  • Assume compromise if assets are exposed
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: Immediate (within 24h)

NVD description

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

8.8/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2026-06-05. Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Weakness type (CWE)
CWE-287CWE-862

Priority

CRITICAL

Exploitation

ACTIVE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bootstrap_os
  • codeready_linux_builder
  • codeready_linux_builder_for_power_little_endian
  • debian_linux

Threat summary

  • Active exploitation appears in 26 classified signals
  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 31 mentions across 13 observed days

What's happening

  • Active exploitation reported across 26 signals
  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 3 signals
  • Patch or workaround mentioned in 10 signals
  • Technical details provided in 22 signals
  • General: 2 classified signals
  • Disclosure: 2 classified signals
  • Peaked 10d ago at 6 mentions (2026-06-03); latest day: 1
  • 31 total mentions across 13 days

Affected systems

Products
bootstrap_oscodeready_linux_buildercodeready_linux_builder_for_power_little_endiandebian_linuxenterprise_linuxenterprise_linux_eusenterprise_linux_for_ibm_z_systemsenterprise_linux_for_ibm_z_systems_eusenterprise_linux_for_power_little_endianenterprise_linux_for_power_little_endian_eus

15 versions affected across 33 products

Deep dive

Activity timeline31 mentions / 13d
02356Mentions · 2026-05-13: 1Mentions · 2026-06-02: 2Mentions · 2026-06-03: 6Mentions · 2026-06-04: 5Mentions · 2026-06-05: 2Mentions · 2026-06-06: 1Mentions · 2026-06-07: 5Mentions · 2026-06-08: 3Mentions · 2026-06-09: 1Mentions · 2026-06-11: 1Mentions · 2026-06-12: 1Mentions · 2026-06-18: 2Mentions · 2026-06-24: 1PoC Mentioned / Linked · 2026-06-03: 1PoC Mentioned / Linked · 2026-06-04: 1PoC Mentioned / Linked · 2026-06-05: 1Exploit Tool / Code · 2026-06-04: 1Active Exploitation · 2026-06-02: 2Active Exploitation · 2026-06-03: 4Active Exploitation · 2026-06-04: 5Active Exploitation · 2026-06-05: 2Active Exploitation · 2026-06-07: 5Active Exploitation · 2026-06-08: 3Active Exploitation · 2026-06-09: 1Active Exploitation · 2026-06-11: 1Active Exploitation · 2026-06-12: 1Active Exploitation · 2026-06-18: 1Active Exploitation · 2026-06-24: 1Patch / Workaround · 2026-05-13: 1Patch / Workaround · 2026-06-02: 1Patch / Workaround · 2026-06-03: 1Patch / Workaround · 2026-06-04: 3Patch / Workaround · 2026-06-05: 1Patch / Workaround · 2026-06-06: 1Patch / Workaround · 2026-06-07: 1Patch / Workaround · 2026-06-08: 1Technical Details · 2026-05-13: 1Technical Details · 2026-06-02: 2Technical Details · 2026-06-03: 4Technical Details · 2026-06-04: 2Technical Details · 2026-06-05: 2Technical Details · 2026-06-06: 1Technical Details · 2026-06-07: 3Technical Details · 2026-06-08: 3Technical Details · 2026-06-09: 1Technical Details · 2026-06-12: 1Technical Details · 2026-06-18: 205-1306-0206-0306-0406-0506-0606-0706-0806-0906-1106-1206-1806-24
Signal classification4 categories
Active Exploitation
2683.9%
General
26.5%
Disclosure
26.5%
Patch
13.2%
Referenced assets25 URLs
By indicator
Classification over time
DateTotalLabels
2026-05-131
General1
2026-06-022
Active Exploitation2
2026-06-036
Active Exploitation4Disclosure1General1
2026-06-045
Active Exploitation5
2026-06-052
Active Exploitation2
2026-06-061
Patch1
2026-06-075
Active Exploitation5
2026-06-083
Active Exploitation3
2026-06-091
Active Exploitation1
2026-06-111
Active Exploitation1
2026-06-121
Active Exploitation1
2026-06-182
Active Exploitation1Disclosure1
2026-06-241
Active Exploitation1
Full discourse20 posts
  • Cyber Security News@The_Cyber_News
    Active Exploitation

    🛡️ CISA Warns of Linux Kernel Improper Authentication Vulnerability Exploited in Attacks Source: https://cybersecuritynews.com/linux-kernel-improper-authentication-vulnerability/ CISA has added a critical Linux kernel vulnerability, tracked as CVE-2022-0492, to its Known Exploited Vulnerabilities (KEV) catalog, warning that the flaw is being actively leveraged in real-world attacks. The issue, categorized as improper authentication, affects Linux systems using the cgroups v1 release_agent feature and may allow attackers to achieve privilege escalation. By exploiting this behavior, an attacker can execute arbitrary commands with elevated privileges, effectively escaping containerized environments or gaining root-level access on the host system. #cybersecuritynews

    Post summary

    CISA confirms CVE‑2022‑0492 is actively exploited, enabling privilege escalation on Linux systems via improper authentication in cgroups v1 release_agent.

    95231624210.3K
    69.3K followersView on X
  • CISA Cyber@CISACyber
    Active Exploitation

    🛡️ We added Linux Kernel improper authentication vulnerability CVE-2022-0492 & Android Framework integer overflow vulnerability CVE-2025-48595 to our Known Exploited Vulnerabilities Catalog. Visit https://go.dhs.gov/Z3Q & apply mitigations to protect your org from cyberattacks. https://t.co/xrUH6q20rm

    Post summary

    Both CVEs are identified as actively exploited and mitigations are available, emphasizing the need for immediate patching and defensive measures.

    11823846.0K
    300.1K followersView on X
  • ボス@サイバーセキュリティの専門家@boss_sec_labo
    Disclosure

    今日のセキュリティは、国内体制の刷新、足元の権限昇格、古傷の再悪用、そしてAIによるN-day自動生成が同じ卓に並んだ日だ。守る側の時間が、また削られている。 ・警察庁、初の民間出身者を重大サイバー事案対策戦略官に起用 ・富士通系ServerView Agentsに権限昇格2件、CVE-2026-27788/32325 ・CISA、AndroidとLinuxの古傷(CVE-2025-48595/CVE-2022-0492)悪用を警告 ・研究者がClaude Opus 4.7でWindowsパッチからN-day半自動生成PoC公開 ・AIエージェントOpenClawのSlack/Discord連携で表示名なりすまし5件 君の現場の「異常なし」は、本当に異常なしか?パッチを当てて満足していないか?攻撃側がAIで加速する一方、守る側の手数は、本当に足りているか?俺は、現場のリアルから目を逸らさん。

    Post summary

    CVE disclosures for privilege escalations in FujiNet ServerView Agents and old Android/Linux vulnerabilities are announced, along with a PoC for N‑day vulnerability generation, underscoring AI‐driven threat momentum.

    0101121.5K
    1.3K followersView on X
  • DC3 DCISE@DC3DCISE
    Active Exploitation

    CISA warns of active exploits targeting #Android and #Linux flaws (CVE-2025-48595 & CVE-2022-0492). The Android bug allows privilege escalation with zero user interaction! ⚠️ Visit @CISAcyber for more

    Post summary

    CISA alerts that CVE-2025-48595 and CVE-2022-0492 are weaponized in the wild, with Android users at risk of privilege escalation without user interaction.

    11040270
    738 followersView on X
  • it security@it__security
    Active Exploitation

    Die US-Behörde #CISA warnt vor Angriffen auf die #Linux-Schwachstelle CVE-2022-0492, die eine Privilegieneskalation und Container-Ausbrüche ermöglicht. https://www.it-daily.net/shortnews/linux-luecke-cisa-warnt-angriffe

    Post summary

    CISA warns that CVE-2022-0492 is being actively exploited, enabling privilege escalation and container escapes, but no patch or PoC details are provided.

    01020143
    5.4K followersView on X
  • Elusive@ElusivePrivacy
    Active Exploitation

    CISA KEV roundup: Linux cgroups escape, Android Framework, Magento RCE all actively exploited Three additions to CISA's Known Exploited Vulnerabilities catalog this week: CVE-2022-0492 (Linux kernel cgroups v1, container escape via improper auth), CVE-2025-48595 (Android Framework integer overflow), and CVE-2026-45247 (Mirasvit Full Page Cache Warmer for Magento 2 unauthenticated RCE via PHP object injection in CacheWarmer cookie, patched in v1.11.12). Feds have 21 days to patch. Source: CISA / BleepingComputer Full analysis → http://t.me/VulnerabilityNews Follow @VulnerabilityNw

    Post summary

    The CISA KEV roundup confirms that CVE-2022-0492, CVE-2025-48595, and CVE-2026-45247 are actively exploited in the wild, with patches already available and a 21‑day remediation window.

    11010140
    185 followersView on X
  • iototsecnews@iototsecnews
    Active Exploitation

    CISA KEV 警告 26/06/02:Linux Kernel の脆弱性 CVE-2022-0492 を登録 https://iototsecnews.jp/2026/06/05/cisa-issues-alert-on-actively-exploited-linux-kernel-security-flaw/ Linux カーネルの脆弱性 CVE-2022-0492 が、CISA の KEV カタログに登録されました。この問題の原因は、リソースを管理する cgroups v1 という仕組みの中で、認証や認可のチェックが不十分だったことにあります。この確認の不備を突く攻撃者は、release_agent という機能を悪用することで、本来は制限されているはずのコンテナの壁を越えて、ホストシステムの root 権限を奪う可能性を得ます。ご利用のチームは、ご注意ください。 #CISA #CVE20220492 #Exploit #KEV #LinuxKernel #Vulnerability

    Post summary

    CISA has listed CVE‑2022‑0492 in its KEV catalogue, indicating it is actively being exploited, with details on how attackers can escape container isolation and gain host root privileges. No PoC, exploit code, patch, or debunking information is provided.

    01001131
    499 followersView on X
  • Nullvy | CyberNews@NullvyNews
    Active Exploitation

    أضافت وكالة الأمن السيبراني وأمن البنية التحتية الأمريكية (CISA) الثغرة CVE-2022-0492 إلى قائمة الثغرات المعروفة المستغلة (KEV)، مؤكدةً وجود عمليات استغلال فعلية لها في هجمات إلكترونية جارية. 📌 للتفاصيل الكاملة: 🔗 https://www.instagram.com/p/DZRyI-fIrMu/?igsh=MWhzZWZkYzJpZjY2bw== #linux #cisa #vulnerability https://t.co/AzUXjy8K2d

    Post summary

    CISA confirms that CVE-2022-0492 is actively exploited in ongoing cyber attacks.

    0002048
    22 followersView on X
  • The Daily Tech Feed@dailytechonx
    Active Exploitation

    CISA warns of active exploitation of Linux kernel vulnerability CVE-2022-0492. Update systems and apply mitigations promptly to prevent privilege escalation. #LinuxKernel #CyberSecurity #CVE20220492 Link: https://thedailytechfeed.com/cisa-warns-of-critical-linux-kernel-flaw-exploited-in-attacks-urges-immediate-remediation/ https://t.co/cU3jxtgCWA

    Post summary

    CISA reports that CVE-2022-0492 is being actively exploited to achieve privilege escalation, urging immediate patching and mitigation.

    0001049
    366 followersView on X
  • Guardian360@Guardian360nl
    Active Exploitation

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on June 2, 2026, added CVE-2022-0492 to its Known Exploited Vulnerabilities (KEV) catalog, formally confirming active in-the-wild exploitation of a high-severity Linux Kernel improper authentication flaw.

    Post summary

    CISA confirmed that CVE‑2022‑0492, a high‑severity Linux kernel improper authentication flaw, is actively exploited in the wild, though no PoC, exploit code, or patch information is provided.

    1000039
    201 followersView on X
  • AbOUk | East Africa Tech@abokfelix
    Active Exploitation

    Thread 1/4 CISA Urgent Alert: Actively exploited Linux kernel vuln added to KEV catalog. CVE-2022-0492 (cgroups v1 release_agent) lets attackers escalate from container to host root. Confirmed in-the-wild exploitation. The federal deadline was June 5. Everyone should act now.

    Post summary

    The post alerts that CVE-2022-0492, a Linux kernel privilege‑escalation flaw, is actively exploited in the wild, urging immediate action before the June 5 federal deadline.

    10000102
    7.7K followersView on X
  • GoCocoaAI@GoCocoaAI
    Active Exploitation

    Two vulnerabilities landed on CISA's KEV catalog June 2. The federal patch deadline is June 9 — which, depending on when you're reading this, is today or already behind you. CVE-2022-0492 is the one that should make you wince. A Linux kernel flaw in the cgroups v1 implementation: a container incorrectly authenticates against the privileged release_agent mechanism, escapes to host, escalates. In cloud and Kubernetes environments that's not a foothold — that's a lateral movement highway. The disclosure date is 2022. The KEV-listing date is 2026. Four years is a long time to leave a container escape unpatched across federal infrastructure, and yet here we are. We are nothing if not consistent. CVE-2025-48595 is the fresher problem. Android Framework privilege escalation, confirmed in-wild exploitation, federal deadline the same Tuesday. The Android angle is worth noting: mobile device management is consistently the weakest link in federal endpoint hygiene, and "push the June patch level through MDM before the deadline" is the kind of sentence that sounds simple until you're the person doing it against OTA rollout timelines. Neither of these requires sophisticated tradecraft. CVE-2022-0492 has had public PoCs since 2022. CVE-2025-48595 is already being exploited in the wild. The exposure window is open, and BOD 22-01 gives agencies no wiggle room — patch or file a formal exception, no third option. For containerized Linux workloads specifically: check your kernel version and confirm whether cgroups v2 has been enforced. A lot of managed Kubernetes distributions still default to v1. That's the check that matters today. For Android: if your team uses Android devices for work, the June security patch level through MDM is the move, now. MITRE framing for those mapping this to detections: T1611 (Escape to Host) and T1610 (Deploy Container) for CVE-2022-0492; T1068 (Exploitation for Privilege Escalation) for CVE-2025-48595; T1190 (Exploit Public-Facing Application) as the opportunistic vector for both. The June 3 addition — a separate single-CVE alert — is a distinct bulletin. That one is still in the window. Sources: CISA advisory index (June 2–3, 2026), @CISAgov, emnetwork Substack digest.

    Post summary

    The advisory warns of two CVEs—CVE‑2022‑0492 (container escape) and CVE‑2025‑48595 (Android privilege escalation)—that are actively exploited and pose imminent risk; the message calls for urgent patching by the federal deadline of June 9.

    1000060
    19 followersView on X
  • piyokango@piyokango
    Active Exploitation

    米国CISAが悪用を確認した脆弱性 #KEV をカタログに追加しました。(6/2追加) 🛡 No. 1610 CVE-2022-0492 Linux Kernel Improper Authentication Vulnerability ================================== ✅概要 ・深刻度:重要 7.8 (CVSS Base) / NVD ・種別:認可の欠落 (CWE-862) ・CVSS:CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Linux Kernel の kernel/cgroup/cgroup-v1.c にある cgroup_release_agent_write に脆弱性が存在します。 特定条件下で cgroups v1 の release_agent 機能を利用し、権限昇格および namespace isolation の予期しないバイパスが可能になる可能性があります。 ✅ChatGPTによる脆弱性評価 ・国内影響度:高 ・悪用難易度:高 ✅攻撃前提条件 ・脆弱な Linux Kernel を使用している ・攻撃者がローカルで低権限を持っている ・cgroups v1 release_agent 機能を利用可能な条件が存在する ・コンテナ環境では seccomp、AppArmor、SELinux などによる制限が十分でない ✅悪用時影響 ・ローカル権限昇格 ・namespace isolation のバイパス ・コンテナ環境からのエスケープ ・ホスト側リソースへの不正アクセス ✅悪用事例等に関する公開情報 ・PoC/Exploit:公開済み ・ITW:未確認 ・公開コードでは cgroup の release_agent への書き込みや unshare を用いた処理を確認。NVD/Red Hat が説明する cgroups v1 release_agent 機能を用いた権限昇格・namespace isolation バイパスの内容と整合。 ✅関連情報 ・https://nvd.nist.gov/vuln/detail/CVE-2022-0492 ・https://bugzilla.redhat.com/show_bug.cgi?id=2051505 ・https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=24f6008564183aa120d07c03d9289519c2fe02af 🛡 No. 1611 CVE-2025-48595 Android Framework Integer Overflow Vulnerability ================================== ✅概要 ・深刻度:重要 8.4 (CVSS Base) / CISA-ADP ・種別:整数オーバーフローまたはラップアラウンド (CWE-190) ・CVSS:CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Android Framework に存在する整数オーバーフローの脆弱性です。 複数箇所でコード実行につながる可能性があり、追加の実行権限やユーザー操作なしにローカル権限昇格につながる可能性があります。 ✅ChatGPTによる脆弱性評価 ・国内影響度:高 ・悪用難易度:高 ✅攻撃前提条件 ・影響を受ける Android 14、15、16、16-qpr2 を使用している ・2026-06-01 以降のセキュリティパッチレベルが適用されていない ・攻撃者がローカルで脆弱性を誘発可能な状態にある ・追加の実行権限は不要 ✅悪用時影響 ・ローカル権限昇格 ・コード実行 ・機密情報の取得 ・情報改ざん ・端末上の権限境界の突破 ✅悪用事例等に関する公開情報 ・PoC/Exploit:一部公開(技術情報のみ) ・ITW:確認済み(Google) ・Android Security Bulletin は、CVE-2025-48595 について限定的かつ標的型の悪用が行われている可能性があると報告。 ✅関連情報 ・https://nvd.nist.gov/vuln/detail/CVE-2025-48595 ・https://source.android.com/docs/security/bulletin/2026/2026-06-01 https://www.cisa.gov/news-events/alerts/2026/06/02/cisa-adds-two-known-exploited-vulnerabilities-catalog #vulnerability

    Post summary

    The entry announces CISA’s catalog addition of two CVEs, confirms active exploitation for CVE‑2025‑48595 via Google/Android bulletin, provides PoC code for CVE‑2022‑0492, and mentions relevant patches and technical details.

    010004.3K
    43.4K followersView on X
  • Xavier Rivera@XavierRiveraX
    Active Exploitation

    Two CVEs hit CISA's KEV today. CVE-2025-48595 is a zero-interaction privilege escalation affecting Android 14-16. CVE-2022-0492 enables container escape to root via Linux cgroups v1. Federal agencies have until June 5 to patch.

    Post summary

    The post reports two CVEs—CVE-2025-48595 and CVE-2022-0492—identified by CISA as being actively exploited, with a patch deadline for federal agencies.

    00010170
    564 followersView on X
  • CVETrends@CVEShield
    General

    Top 5 Trending CVEs: 1 - CVE-2025-53773 2 - CVE-2025-32711 3 - CVE-2022-0492 4 - CVE-2024-21182 5 - CVE-2026-0257 #cve #cvetrends #cveshield #cybersecurity https://www.cveshield.com/dashboard

    Post summary

    The post simply enumerates a list of top trending CVEs with no additional technical or operational details.

    00010124
    1.7K followersView on X
  • TECHEPAGES@techepages
    Active Exploitation

    🚨 CISA KEV Catalog Update June 2026 (status on 24.06.2026) - actively exploited vulnerabilities in the database: 🔹 Ubiquiti UniFi OS: CVE-2026-34908/34909/34910 (due 6/26) 🔹 Lantronix EDS5000: CVE-2025-67038 (due 6/26) 🔹 Splunk Enterprise: CVE-2026-20253 (due 6/21) 🔹 Widget Factory Joomla Editor: CVE-2026-48907 (due 6/19) 🔹 Cisco SD-WAN Mgr: CVE-2026-20262 (due 6/29), CVE-2026-20245 (due 6/23) 🔹 LiteSpeed cPanel Plugin: CVE-2026-54420 (due 6/18) 🔹 Oracle PeopleSoft: CVE-2026-35273 — known ransomware use (due 6/15) 🔹 Ivanti Sentry: CVE-2026-10520 (due 6/14) 🔹 Arista EOS: CVE-2026-7473 (due 6/23) 🔹 Chromium V8: CVE-2026-11645 (due 6/23) 🔹 Check Point Gateway: CVE-2026-50751 — known ransomware use (due 6/11) 🔹 BerriAI LiteLLM: CVE-2026-42271 (due 6/22) 🔹 SolarWinds Serv-U: CVE-2026-28318 (due 6/19) 🔹 Mirasvit Cache Warmer: CVE-2026-45247 (due 6/6) 🔹 Android Framework: CVE-2025-48595 (due 6/5) 🔹 Linux Kernel: CVE-2022-0492 (due 6/5) 🔹 Oracle WebLogic: CVE-2024-21182 (due 6/4)

    Post summary

    The notice lists CVEs that CISA identifies as actively exploited, highlighting ransomware usage for some.

    00000148
    17 followersView on X
  • CiberPlaneta@CiberPlanetaOrg
    Disclosure

    🛡️ CVE-2022-0492: Vulnerabilidad de Escalada de Privilegios en el Kernel de Linux mediante cgroups v1 Análisis técnico del CVE-2022-0492 en el Kernel Linux: escalada de privilegios vía cgroups v1 release_agent, impacto, productos afectados y mitigaciones. https://www.ciberplaneta.org/vulnerabilidades/cve-2022-0492-vulnerabilidad-de-escalada-de-privilegios-en-el-kernel-de-linux-mediante-cgroups-v1/ #ciberplaneta #vulnerabilidades #cve_2022_0492 #cve #vulnerabilidad #linux #seguridad #infosec #ciberseguridad

    Post summary

    The post announces a privilege‑escalation flaw in the Linux kernel (CVE‑2022‑0492) and offers a technical analysis, but no PoC, exploit code, active exploitation data, or patch details are shared.

    0000035
    6 followersView on X
  • CiberPlaneta@CiberPlanetaOrg
    Active Exploitation

    🛡️ Alerta de Seguridad: Escalada de Privilegios en Linux Kernel mediante cgroups v1 release_agent (CVE-2022-0492) Vulnerabilidad de autenticación incorrecta en Linux Kernel permite escalada de privilegios local (LPE) y escape de contenedor vía cgroups v1 release_agent. CVSS 7.8 HIGH. https://www.ciberplaneta.org/boletines/122/ #ciberplaneta #bulletin #cybersecurity #cve #linux #kernel #lpe #container_escape #cgroups #privilege_escalation #ioc #cisa_kev #infosec #ciberseguridad

    Post summary

    The tweet announces CVE-2022-0492, a local privilege escalation via cgroups v1 release_agent with CVSS 7.8 HIGH, and signals it is actively exploited in the wild (CISA KEV).

    0000052
    6 followersView on X
  • Ergun Akman@AturcDestek
    Active Exploitation

    🚨 CISA'dan Kritik Uyarı: Linux Kernel'de Aktif İstismar Edilen Zafiyet (CVE-2022-0492) – Konteyner Kaçışı ve Ayrıcalık Yükseltme Riski! https://www.linkedin.com/pulse/cisadan-kritik-uyar%25C4%25B1-linux-kernelde-aktif-istismar-edilen-ergun-akman-ohivf @LinkedIn aracılığıyla

    Post summary

    The post announces that CVE‑2022‑0492, a Linux Kernel vulnerability, is actively exploited for container escape and privilege escalation, referencing a CISA advisory, with no PoC, exploit code, patch, or false‑positive claim provided.

    0000024
    18 followersView on X
  • The Daily Tech Feed@dailytechonx
    Active Exploitation

    CISA warns of active exploitation of critical #LinuxKernel vulnerability CVE-2022-0492. Immediate patching recommended to prevent privilege escalation attacks. #Cybersecurity #Linux #CISA #Kernel #Vulnerability #Exploit #Patching #PrivilegeEscalation #Cloud #Containers #Security #Infosec #Malware #Threat #ZeroDay #Sysadmin #DevSecOps #Compliance #Mitigation #Risk #Breach #Endpoint #Detection Link: https://thedailytechfeed.com/cisa-warns-of-active-exploitation-of-critical-linux-kernel-flaw-cve-2022-0492-in-cloud-and-container-environments/

    Post summary

    The tweet announces that CVE‑2022‑0492 is being actively exploited in cloud and container environments, urging immediate patching to stop privilege escalation.

    0000060
    363 followersView on X
CPE platform detail47 entries

47 of 47 entries

PartVendorProductVersionTarget SWTarget HW
OScanonicalubuntu_linux14.04--
OScanonicalubuntu_linux16.04--
OScanonicalubuntu_linux18.04--
OScanonicalubuntu_linux20.04--
OScanonicalubuntu_linux22.04--
OSdebiandebian_linux10.0--
OSdebiandebian_linux11.0--
OSdebiandebian_linux9.0--
OSfedoraprojectfedora35--
OSlinuxlinux_kernel---
OSlinuxlinux_kernel5.17--
OSlinuxlinux_kernel5.17--
OSnetappbootstrap_os---
HWnetapph300s---
OSnetapph300s_firmware---
HWnetapph410c---
OSnetapph410c_firmware---
HWnetapph410s---
OSnetapph410s_firmware---
HWnetapph500s---
OSnetapph500s_firmware---
HWnetapph700s---
OSnetapph700s_firmware---
HWnetapphci_compute_node---
Appnetappsolidfire\,_enterprise_sds_\&_hci_storage_node---
Appnetappsolidfire_\&_hci_management_node---
Appredhatcodeready_linux_builder8.0--
Appredhatcodeready_linux_builder8.2--
Appredhatcodeready_linux_builder_for_power_little_endian8.0--
Appredhatcodeready_linux_builder_for_power_little_endian8.2--
OSredhatenterprise_linux8.0--
OSredhatenterprise_linux_eus8.2--
OSredhatenterprise_linux_for_ibm_z_systems8.0--
OSredhatenterprise_linux_for_ibm_z_systems_eus8.0--
OSredhatenterprise_linux_for_power_little_endian8.0--
OSredhatenterprise_linux_for_power_little_endian_eus8.0--
OSredhatenterprise_linux_for_real_time_for_nfv_tus8.0--
OSredhatenterprise_linux_for_real_time_for_nfv_tus8.2--
OSredhatenterprise_linux_for_real_time_tus8.0--
OSredhatenterprise_linux_for_real_time_tus8.2--
OSredhatenterprise_linux_server_aus8.2--
OSredhatenterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions8.1--
OSredhatenterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions8.2--
OSredhatenterprise_linux_server_tus8.2--
OSredhatenterprise_linux_server_update_services_for_sap_solutions8.1--
OSredhatenterprise_linux_server_update_services_for_sap_solutions8.2--
Appredhatvirtualization_host4.0--

Explore more