A vulnerability in the implementation of the MCTP protocol for Linux, allowing privilege escalation.
A vulnerability has been identified in the Linux kernel (CVE-2022-3977), which can potentially be exploited by a local user to escalate their privileges within the system. The vulnerability manifests starting from kernel 5.18 and was fixed in branch 6.1. You can track the appearance of fixes in distributions on the pages for: Debian, Ubuntu, Gentoo, RHEL, SUSE, Arch. The vulnerability exists in the implementation of the MCTP (Management Component Transport Protocol), used for […]
