Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-4128

Опубликовано: 28 нояб. 2022
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

A NULL pointer dereference issue was discovered in the Linux kernel in the MPTCP protocol when traversing the subflow list at disconnect time. A local user could use this flaw to potentially crash the system causing a denial of service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:mptcp_protocol:*:*:*:*:*:*:*:*
Версия до 5.19 (исключая)

EPSS

Процентиль: 7%
0.0003
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

A NULL pointer dereference issue was discovered in the Linux kernel in the MPTCP protocol when traversing the subflow list at disconnect time. A local user could use this flaw to potentially crash the system causing a denial of service.

CVSS3: 5.5
redhat
почти 3 года назад

A NULL pointer dereference issue was discovered in the Linux kernel in the MPTCP protocol when traversing the subflow list at disconnect time. A local user could use this flaw to potentially crash the system causing a denial of service.

CVSS3: 5.5
debian
больше 2 лет назад

A NULL pointer dereference issue was discovered in the Linux kernel in ...

CVSS3: 5.5
github
больше 2 лет назад

A NULL pointer dereference issue was discovered in the Linux kernel in the MPTCP protocol when traversing the subflow list at disconnect time. A local user could use this flaw to potentially crash the system causing a denial of service.

CVSS3: 5.5
fstec
почти 3 года назад

Уязвимость реализации протокола MPTCP ядра операционной системы Linux в функции mptcp_copy_inaddrs(), позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 7%
0.0003
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-476