CVE-2022-0492

High7.8Published on March 3, 2022

A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.

Actively exploited

  • In the CISA exploited-vulnerabilities catalogue since Jun 2, 2026
  • US federal agencies must remediate it by Jun 5, 2026 (BOD 22-01)
  • First attack observed 1550 days after disclosure

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Source: CISA KEV · Jul 10, 2026 Jun 2, 2026 Jun 2, 2026 Jun 1, 2026

CVSS score7.8 / 10CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness type (CWE)CWE-287, CWE-862
Vendorsredhat, debian, netapp, linux

Affected products

VendorsProductVersions
netapph300s firmware-
netapph300s-
netapph410c firmware-
netapph410c-
netapph410s firmware-
netapph410s-
netapph500s firmware-
netapph500s-
netapph700s firmware-
netapph700s-
netappbootstrap os-
netapphci compute node-
linuxlinux kernel< 4.9.301
debiandebian linux9.0
redhatcodeready linux builder8.0
redhatcodeready linux builder for power little endian8.0
redhatvirtualization host4.0
redhatenterprise linux8.0
redhatenterprise linux eus8.2
redhatenterprise linux for ibm z systems8.0
redhatenterprise linux for ibm z systems eus8.0
redhatenterprise linux for power little endian8.0
redhatenterprise linux for power little endian eus8.0
redhatenterprise linux for real time for nfv tus8.0
redhatenterprise linux for real time tus8.0

Related articles

This product uses the NVD API but is not endorsed or certified by the NVD.

CVE database