PT-2022-35838 · Linux · Linux Kernel

Published

2022-11-14

·

Updated

2022-11-14

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux Kernel versions prior to v4.14.296
Description The issue concerns an integer overflow when loading firmware, specifically affecting the crypto component related to Cavium. This problem was introduced in version v4.11 and is resolved in version v4.14.296. The actual impact and potential for attack have not been fully determined.
Recommendations For Linux Kernel versions prior to v4.14.296, update to version v4.14.296 or later to resolve the issue.

Related Identifiers

GSD-2022-1007583

Affected Products

Linux Kernel