Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-4129

Опубликовано: 28 нояб. 2022
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:linux:layer_2_tunneling_protocol:*:*:*:*:*:*:*:*
Версия до 6.0 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*

EPSS

Процентиль: 2%
0.00016
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-667
CWE-667

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.

CVSS3: 5.5
redhat
почти 3 года назад

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.

CVSS3: 5.5
debian
больше 2 лет назад

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2T ...

CVSS3: 5.5
github
больше 2 лет назад

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.

CVSS3: 5.5
fstec
больше 2 лет назад

Уязвимость реализации протокола Layer 2 Tunneling Protocol (L2TP) ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 2%
0.00016
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-667
CWE-667