AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2022-0500.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSHIGH / 7.8CVSS 3.1 · nvd@nist.gov
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSModifiedModified Oct 08, 2026

Disclosure summary

A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel’s BPF subsystem due to the way a user loads BTF. This flaw allows a local user to crash or escalate their privileges on the system.

Source-reported weakness categories

CWE-119, CWE-787

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

NIST National Vulnerability Database · NVD-CVE-2022-0500

Open original source · Updated Oct 08, 2026

Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.

VendorProduct / associationVersion / bounds
linuxlinux_kernel* {"versionStartIncluding":"5.16","versionEndExcluding":"5.16.11"}
fedoraprojectfedora34
fedoraprojectfedora35
netapph300e_firmware-
netapph300s_firmware-
netapph410c_firmware-
netapph410s_firmware-
netapph500e_firmware-
netapph500s_firmware-
netapph700e_firmware-
netapph700s_firmware-

Original records & references

PUBLISHED 2022-03-25T15:15:10-04:00
MODIFIED 2026-10-08T18:17:14-04:00
INGESTED 2026-10-10T20:50:21-04:00