# CVE-2022-3650

## Summary

- **CVE ID:** CVE-2022-3650
- **Severity:** UNKNOWN
- **CVSS Score:** 0
- **CWE:** CWE-842
- **Published:** Jan 17, 2023
- **Last Modified:** Mar 13, 2026

## Description

A privilege escalation flaw was found in Ceph. Ceph-crash.service allows a local attacker to escalate privileges to root in the form of a crash dump, and dump privileged information.

## Affected Products

- n/a — Ceph (unknown)

## References

- [CNA](https://seclists.org/oss-sec/2022/q4/41)
- [CNA](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OEVVWT5ZFLYCVZNDJTDX7R6RY2W7JHP5/)
- [CNA](https://security.gentoo.org/glsa/202312-10)
- [CVE](https://lists.debian.org/debian-lts-announce/2025/09/msg00025.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.03%
- **EPSS Percentile:** 7.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._