yocto ▾
›
scarthgap ▾
›
vulnerability
›
CVE-2022-4968
Component Overview
Vulnerability Overview
Name
CVE-2022-4968
Source
NVD (
link
)
Debian (
link
)
Description
netplan leaks the private key of wireguard to local users. Versions after 1.0 are not affected.
CWEs
CWE-497
Published Date
Jun 7, 2024
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://bugs.launchpad.net/netplan/+bug/1987842
Issue Tracking
https://bugs.launchpad.net/ubuntu/+source/netplan.io/+bug/2065738
Exploit
https://github.com/canonical/netplan/commit/4c39b75b5c6ae7d976bda6da68da60d9a7f085ee
Patch
https://www.cve.org/CVERecord?id=CVE-2022-4968
US Government Resource
https://bugs.launchpad.net/netplan/+bug/1987842
Issue Tracking
https://bugs.launchpad.net/ubuntu/+source/netplan.io/+bug/2065738
Exploit
https://github.com/canonical/netplan/commit/4c39b75b5c6ae7d976bda6da68da60d9a7f085ee
Patch
https://www.cve.org/CVERecord?id=CVE-2022-4968
US Government Resource
Analysis
#
Affected Component
Analysis
netplan
Patched
Vulnerability Ratings
#
6.5
CVSSv31
6.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
netplan
yocto
kirkstone
0.104
Patched
netplan
yocto
master
1.2.1
Not Affected
Resolved with patches
#
netplan (yocto:kirkstone)
#
Title
Author
Resolve
1
libnetplan: use more restrictive file permissions
Danilo Egea Gondolfo <danilogondolfo@gmail.com>
CVE-2022-4968
netplan (yocto:scarthgap)
#
Title
Author
Resolve
1
libnetplan: use more restrictive file permissions
Danilo Egea Gondolfo <danilogondolfo@gmail.com>
CVE-2022-4968