> Source: [sk177712](https://support.checkpoint.com/results/sk/sk177712)

# sk177712 - Check Point Response to CVE-2022-0185

| Property | Value |
|----------|-------|
| Solution ID | sk177712 |
| Date Created | 2022-01-31 |
| Last Modified | 2022-02-01 |
| Technical Level | General |
| Products | Other |
| Versions | Not Version-Specific |
| OS | Gaia |

## Symptoms

- A heap-based buffer overflow flaw was found in the way the *legacy_parse_param* function in the Filesystem Context functionality of the Linux kernel verified the supplied parameters length. An unprivileged (in case of unprivileged user namespaces enabled, otherwise needs namespaced *CAP_SYS_ADMIN* privilege) local user able to open a filesystem that does not support the Filesystem Context API (and thus fallbacks to legacy handling) could use this flaw to escalate their privileges on the system.

## Cause

This issue affects the Linux kernel packages as shipped with Red Hat Enterprise Linux 8.4 GA onwards. Previous Red Hat Enterprise Linux versions are not affected.

## Solution

Check Point Gaia OS is not vulnerable to [CVE-2022-0185](https://access.redhat.com/security/cve/cve-2022-0185) as the vulnerable functionality is not included.  

Check Point uses a custom hardened version of Red Hat Enterprise Linux 5.x for Gaia system R80.20 and earlier. Check Point uses a custom hardened version of Red Hat Enterprise Linux 7.x for Gaia system R80.30 and later.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
