PT-2025-8660 · Linux+2 · Linux Kernel+2
Wang Yufen
·
Published
2022-06-08
·
Updated
2025-04-16
·
CVE-2022-49727
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A signed integer overflow issue has been identified in the Linux kernel, specifically in the ipv6 component, related to the l2tp ip6 sendmsg function. This occurs when the length (len) is greater than or equal to INT MAX - transhdrlen, causing an overflow when calculating ulen = len + transhdrlen. The issue is resolved by subtracting transhdrlen from the maximum value, similar to the approach used in udpv6.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse