PT-2025-8660 · Linux+2 · Linux Kernel+2

Wang Yufen

·

Published

2022-06-08

·

Updated

2025-04-16

·

CVE-2022-49727

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A signed integer overflow issue has been identified in the Linux kernel, specifically in the ipv6 component, related to the l2tp ip6 sendmsg function. This occurs when the length (len) is greater than or equal to INT MAX - transhdrlen, causing an overflow when calculating ulen = len + transhdrlen. The issue is resolved by subtracting transhdrlen from the maximum value, similar to the approach used in udpv6.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02627
CVE-2022-49727
OESA-2025-1336
SUSE-SU-2025:1293-1
SUSE-SU-2025_1293-1

Affected Products

Astra Linux
Linux Kernel
Suse