CVE-2022-25265

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
4.4
MEDIUM
Affected
2
PROJECTS

Description

In the Linux kernel through 5.16.10, certain binary files may have the exec-all attribute if they were built in approximately 2003 (e.g., with GCC 3.2.2 and Linux kernel 2.4.20). This can cause execution of bytes located in supposedly non-executable regions of a file.

Linux kernel source tree
GitHubGitHub
237K
Bypassing Linux Executable Space Protection using 20+ years old tools (CVE-2022-25265).
GitHubGitHub
13