PT-2022-7470 · Linux+3 · Linux Kernel+3

Syzbot

·

Published

2022-03-10

·

Updated

2024-08-29

·

CVE-2022-48855

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a kernel infoleak in the Linux kernel's SCTP sockets. The problem occurs when the inet sctp diag fill() function calls inet diag msg common fill(), and the r->idiag expires variable is not initialized. This can lead to a kernel infoleak of 4 bytes. The vulnerability is caused by the lack of initialization of the idiag timer, idiag retrans, and idiag expires variables, which can be filled again by the inet diag msg sctpasoc fill() function if needed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-06612
CVE-2022-48855
OESA-2024-1895
OPENSUSE-SU-2024_2947-1
SUSE-SU-2024:2892-1
SUSE-SU-2024:2894-1
SUSE-SU-2024:2901-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2940-1
SUSE-SU-2024:2947-1

Affected Products

Astra Linux
Linux Kernel
Red Os
Suse