PT-2022-3210 · Linux+4 · Linux Kernel+4

Xiaolong Huang

·

Published

2022-03-31

·

Updated

2023-08-14

·

CVE-2022-1671

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A NULL pointer dereference flaw was found in rxrpc preparse s in net/rxrpc/server key.c in the Linux kernel. This flaw allows a local attacker to crash the system or leak internal kernel information. The vulnerability is related to errors in the implementation of the preparse server key(), free preparse server key(), and destroy server key() functions in the Linux kernel, which can lead to a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2050
ALT-PU-2022-2058
ALT-PU-2022-2152
ALT-PU-2022-2155
ALT-PU-2023-1684
ALT-PU-2023-1741
ALT-PU-2023-1814
ALT-PU-2023-4894
AZL-10400
BDU:2022-03903
CVE-2022-1671
OPENSUSE-SU-2022_2520-1
OPENSUSE-SU-2022_2615-1
SUSE-SU-2022:2520-1
SUSE-SU-2022:2615-1
USN-5469-1

Affected Products

Alt Linux
Linuxmint
Linux Kernel
Suse
Ubuntu