CVE-2022-0882

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/05/2022
Last modified:
21/07/2023

Description

A bug exists where an attacker can read the kernel log through exposed Zircon kernel addresses without the required capability ZX_RSRC_KIND_ROOT. It is recommended to upgrade the Fuchsia kernel to 4.1.1 or greater.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:google:fuchsia:*:*:*:*:*:*:*:* 4.1.1 (excluding)


References to Advisories, Solutions, and Tools