PT-2022-6332 · Linux+2 · Linux Kernel+2

Syzbot

·

Published

2022-08-10

·

Updated

2024-05-17

·

CVE-2022-3629

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A vulnerability was found in the Linux Kernel, affecting the vsock connect function of the net/vmw vsock/af vsock.c file. This issue is related to incorrect handling of socket block usage counters in the IPsec component of the Linux operating system. The manipulation leads to a memory leak. The complexity of an attack is rather high, and exploitation appears to be difficult. It may allow a remote attacker to cause a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-00944
CVE-2022-3629
DLA-3173-1
OESA-2022-2035
OESA-2022-2036
OESA-2022-2045
OPENSUSE-SU-2022_3897-1
OPENSUSE-SU-2022_3998-1
OPENSUSE-SU-2022_4053-1
OPENSUSE-SU-2022_4072-1
OPENSUSE-SU-2022_4574-1
OPENSUSE-SU-2022_4617-1
SUSE-SU-2022:3897-1
SUSE-SU-2022:3929-1
SUSE-SU-2022:3930-1
SUSE-SU-2022:3998-1
SUSE-SU-2022:4053-1
SUSE-SU-2022:4072-1
SUSE-SU-2022:4272-1
SUSE-SU-2022:4273-1
SUSE-SU-2022:4561-1
SUSE-SU-2022:4573-1
SUSE-SU-2022:4574-1
SUSE-SU-2022:4589-1
SUSE-SU-2022:4611-1
SUSE-SU-2022:4614-1
SUSE-SU-2022:4615-1
SUSE-SU-2022:4617-1

Affected Products

Astra Linux
Linux Kernel
Suse