Description
A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurred simultaneously. This flaw could allow a local attacker to potentially trigger an out-of-bounds write or leak kernel heap memory by performing an out-of-bounds read and copying it into a socket.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3131-1 | linux security update |
Debian DLA |
DLA-3173-1 | linux-5.10 security update |
EUVD |
EUVD-2022-42462 | A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurred simultaneously. This flaw could allow a local attacker to potentially trigger an out-of-bounds write or leak kernel heap memory by performing an out-of-bounds read and copying it into a socket. |
Ubuntu USN |
USN-5650-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5693-1 | Linux kernel (OEM) vulnerabilities |
Ubuntu USN |
USN-5727-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5727-2 | Linux kernel (GCP) vulnerabilities |
Ubuntu USN |
USN-5728-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5728-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5728-3 | Linux kernel (GCP) vulnerabilities |
Ubuntu USN |
USN-5729-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5729-2 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5774-1 | Linux kernel (Azure) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T00:53:00.701Z
Reserved: 2022-08-29T00:00:00.000Z
Link: CVE-2022-3028
No data.
Status : Modified
Published: 2022-08-31T16:15:11.867
Modified: 2024-11-21T07:18:39.960
Link: CVE-2022-3028
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN