CVE-2022-0492
Linux Kernel Improper Authentication Vulnerability
- Published
- Mar 3, 2022
- Updated
- Jun 3, 2026
- Assigning CNA
- redhat
- Evidence observed
- Jun 2, 2026
Primary CVSS
nvd · CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HLow · next 30 days
- Percentile
- 92.5%
- Model date
- Sep 21, 2026
EPSS is a statistical estimate, not a certainty or a measure of impact. Combine it with CVSS, KEV status, exposure and your environment.
CISA Known Exploited
This CVE appears in the CISA Known Exploited Vulnerabilities catalog.
Summary
A vulnerability was found in the Linux kernel’s cgroup_release_agent_write in the kernel/cgroup/cgroup-v1.c function. This flaw, under certain circumstances, allows the use of the cgroups v1 release_agent feature to escalate privileges and bypass the namespace isolation unexpectedly.
Sources
7- CVE-2022-0492Exploit
Detailed technical analysis and working exploit for CVE-2022-0492 Linux kernel container escape via cgroup release_agent, with step-by-step lab setup and mitigation guidance.
- can-ctr-escape-cve-2022-0492Scanner
Test whether a container environment is vulnerable to container escapes via CVE-2022-0492
- CVE-2022-0492-CheckerScanner
A script to check if a container environment is vulnerable to container escapes via CVE-2022-0492
Responsible use
Use vulnerability information only on systems you own or are authorized to test. Kitploit links to public research metadata and does not store exploit code or malicious payloads.