Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-4269

Опубликовано: 23 сент. 2022
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.

Отчет

Red Hat Enterprise Linux 6 is not affected by this flaw as it did not include upstream commit 53592b3 ("net/sched: act_mirred: Implement ingress actions").

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelOut of support scope
Red Hat Enterprise Linux 7kernel-rtOut of support scope
Red Hat Enterprise Linux 8kernel-rtFixedRHSA-2023:158404.04.2023
Red Hat Enterprise Linux 8kernelFixedRHSA-2023:156604.04.2023
Red Hat Enterprise Linux 8.4 Extended Update Supportkernel-rtFixedRHSA-2023:122014.03.2023
Red Hat Enterprise Linux 8.4 Extended Update SupportkernelFixedRHSA-2023:122114.03.2023
Red Hat Enterprise Linux 8.6 Extended Update SupportkernelFixedRHSA-2023:113007.03.2023
Red Hat Enterprise Linux 9kernelFixedRHSA-2023:147027.03.2023
Red Hat Enterprise Linux 9kernel-rtFixedRHSA-2023:146927.03.2023

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-833
https://bugzilla.redhat.com/show_bug.cgi?id=2150272kernel: net: CPU soft lockup in TC mirred egress-to-ingress action

EPSS

Процентиль: 1%
0.00013
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.

CVSS3: 5.5
nvd
больше 2 лет назад

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.

CVSS3: 5.5
debian
больше 2 лет назад

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. U ...

CVSS3: 5.5
github
больше 2 лет назад

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.

CVSS3: 5.5
fstec
больше 2 лет назад

Уязвимость подсистемы Traffic Control Subsystem ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 1%
0.00013
Низкий

5.5 Medium

CVSS3