Linux Memory Corruption Vulnerability

Linux Memory Corruption Vulnerability

A memory corruption vulnerability exists in the libpthread linuxthreads functionality of uClibC 0.9.33.2 and uClibC-ng 1.0.40. according to the vulnerability report that has been released on 28th of June.

Linux Memory Corruption Vulnerability

Thread allocation can lead to memory corruption and an attacker may create threads to trigger this vulnerability. (CVE-2022-29503)

Affected Systems

Configuration 1
cpe:2.3:a:uclibc:uclibc:0.9.33.2:*:*:*:*:*:*:*

Configuration 2
cpe:2.3:a:uclibc-ng_project:uclibc-ng:1.0.40:*:*:*:*:*:*:*

Configuration 3
cpe:2.3:o:anker:eufy_homebase_2_firmware:2.1.8.8h:*:*:*:*:*:*:*

Running on/with
cpe:2.3:h:anker:eufy_homebase_2:-:*:*:*:*:*:*:*

IoC’s

-

Recommended Solution(s)

-

Mitigations

-

CVE / CWE

CVE-2022-29503

Related Website(s)

* Vulnerabilities with a CVSS 3.1 score between 7.0 and 8.9 are evaluated to be “high” whereas vulnerabilities with a CVSS 3.1 score between 9.0 and 10.0 are evaluated to be “critical”.