{"schema_version":"1.9.0","id":"ASB-A-244395411","published":"2023-01-01T00:00:00Z","modified":"2026-09-11T15:42:03.104094163Z","aliases":["A-244395411","CVE-2022-2959"],"details":"In pipe_resize_results of pipe.c, there is a possible UAF bug caused by a race condition. This could lead to local denial of service and local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. ","affected":[{"package":{"name":":linux_kernel:","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":":0"},{"fixed":":2023-01-05"}]}],"versions":["Kernel"],"ecosystem_specific":{"fixes":["https://android.googlesource.com/kernel/common/+/a2c2b6c91475908e2ac90a3d70f5d12ae86b8033"],"severity":"High","spl":"2023-01-05","types":["EoP"],"vanir_signatures":[{"deprecated":false,"digest":{"line_hashes":["174066485411310807633767307405195016336","309718443487373006088657801040093541781","123479116233543085081780815739459577278","219093937791553154666348538088726851434","90029672857136066760629739330987736359","18249780466667027071239985674326118678","315236170843468055357738141619650369471","133798260095775449815513357711508429","292045256548982531504756415888031002312","11316084626467880180862910514852592675","32716908462881132271490522257628879001","63102687686438255015795313250901235866","336956158813235096165466343490772399291","195275778097828283066408464715133854309","160936012957928571007406348863422389599","108547412531501327174624029395224895126","149086052647715813731355191140920504689","115358309335790546788126174764657590819","220349234493388545938441083825545796726","325591897061353286025711401583154177594"],"threshold":0.9},"id":"ASB-A-244395411-b11fc347","signature_type":"Line","signature_version":"v1","source":"https://android.googlesource.com/kernel/common/+/a2c2b6c91475908e2ac90a3d70f5d12ae86b8033","target":{"file":"fs/pipe.c"}},{"deprecated":false,"digest":{"function_hash":"267508876685641151495730788666127975888","length":1019},"id":"ASB-A-244395411-e8048f75","signature_type":"Function","signature_version":"v1","source":"https://android.googlesource.com/kernel/common/+/a2c2b6c91475908e2ac90a3d70f5d12ae86b8033","target":{"file":"fs/pipe.c","function":"pipe_resize_ring"}}]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/ASB-A-244395411.json"}}],"references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2023-01-01"},{"type":"FIX","url":"https://android.googlesource.com/kernel/common/+/a2c2b6c91475908e2ac90a3d70f5d12ae86b8033"}]}