CVE-2022-1184
Publication date 29 August 2022
Last updated 14 September 2026
Ubuntu priority
Cvss 3 Severity Score
Description
A use-after-free flaw was found in fs/ext4/namei.c:dx_insert_block() in the Linux kernel’s filesystem sub-component. This flaw allows a local attacker with a user privilege to cause a denial of service.
From the Ubuntu Security Team
It was discovered that the ext4 file system implementation in the Linux kernel contained a use-after-free vulnerability. An attacker could use this to construct a malicious ext4 file system image that, when mounted, could cause a denial of service (system crash).
Read the notes from the security team
Why is this CVE high priority?
See ubuntu cvss score
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| linux | 26.04 LTS resolute |
Not affected
|
| 24.04 LTS noble |
Not affected
|
|
| 22.04 LTS jammy |
Fixed 5.15.0-60.66
|
|
| 20.04 LTS focal |
Fixed 5.4.0-156.173
|
|
| 18.04 LTS bionic |
Fixed 4.15.0-214.225
|
|
| 16.04 LTS xenial |
Fixed 4.4.0-242.276
|
|
| 14.04 LTS trusty |
Vulnerable
|
|
| linux-gke | 26.04 LTS resolute |
Not affected
|
| 24.04 LTS noble |
Not affected
|
|
| 22.04 LTS jammy |
Fixed 5.15.0-1027.32
|
|
| 20.04 LTS focal |
Fixed 5.4.0-1105.112
|
|
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Ignored end of standard support | |
| 14.04 LTS trusty | Not in release | |
| linux-azure-fde-5.15 | 26.04 LTS resolute | Not in release |
| 24.04 LTS noble | Not in release | |
| 22.04 LTS jammy | Not in release | |
| 20.04 LTS focal |
Fixed 5.15.0-1114.123~20.04.1
|
|
| 18.04 LTS bionic | Not in release | |
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |
| linux-xilinx | 26.04 LTS |