Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-2153

21
FAUCET Score

CVE-2022-2153 is a denial-of-service vulnerability in the Linux kernel's KVM component, specifically affecting Debian, Fedora, Linux, and Red Hat distributions. It allows an unprivileged local attacker on the host to trigger a kernel oops by issuing specific ioctl calls, stemming from a NULL pointer dereference when a misbehaving Virtual Machine Monitor (VMM) attempts to write to SYNIC/STIMER MSRs. Rated with a CVSS score of 5.5 (Medium), this flaw has a local attack vector and low attack complexity, leading to a high impact on availability but no impact on confidentiality or integrity. The vulnerability is not currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog, nor is there any evidence of active exploitation. There are no known public exploits available in Metasploit, Nuclei, or ExploitDB, and the vulnerability has garnered minimal community discussion or media coverage, suggesting a low current threat landscape.

Impacted Technologies

VendorProductVersion(s)CPE
< 5.18CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
36CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
6.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
7.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
8.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.45%
Probability of exploitation in next 30 days
EPSS Percentile
36.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0045 is in the 91st percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (14)

github_advisorypatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 x64Fixed in: 5.15.67.1-4
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 ARMFixed in: 5.15.67.1-4
microsoftpatch availablevia msrc
Product: cm1 kernel 5.10.144.1-1 on CBL Mariner 1.0Fixed in: 5.10.144.1-1
microsoftpatch availablevia msrc
Product: cbl2 kernel 5.15.67.1-4 on CBL Mariner 2.0Fixed in: 5.15.67.1-4
microsoftpatch availablevia msrc
Product: 18610-16820Fixed in: 5.10.144.1-1
microsoftpatch availablevia msrc
Product: 18617-16823Fixed in: 5.15.67.1-4
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 5.10.144.1-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 5.10.144.1-1
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt-0:5.14.0-162.6.1.rt21.168.el9_1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt-0:4.18.0-425.3.1.rt7.213.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-425.3.1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-162.6.1.el9_1
View patch
redhatpatch availablevia nvd_reference
View patch

Vendor Advisories (3)

microsoft2022-Sep/CVE-2022-2153

CVE-2022-2153

Sep 13, 2022
microsoft2022-Aug/CVE-2022-2153Moderate

A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs causing a NULL pointer dereference. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls causing a kernel oops condition that results in a denial of service.

Aug 9, 2022
redhatCVE-2022-2153Moderate

kernel: KVM: NULL pointer dereference in kvm_irq_delivery_to_apic_fast()

Mar 25, 2022

References

bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatchThird Party Advisory
github.com / torvalds/linux/commit/00b5f37189d24ac3ed46cb7f11742094778c46ce
PatchThird Party Advisory
github.com / torvalds/linux/commit/7ec37d1cbe17d8189d9562178d8b29167fe1c31a
PatchThird Party Advisory
github.com / torvalds/linux/commit/b1e34d325397a33d97d845e312d7cf2a8b646b44
PatchThird Party Advisory
lists.debian.org / debian-lts-announce/2022/10/msg00000.html
Mailing ListThird Party Advisory
lists.debian.org / debian-lts-announce/2022/11/msg00001.html
Mailing ListThird Party Advisory
openwall.com / lists/oss-security/2022/06/22/1
ExploitMailing ListPatchThird Party Advisory