Wind River Support Network

HomeDefectsLIN1021-2601
Fixed

LIN1021-2601 : Security Advisory - linux - CVE-2022-0322

Created: Jan 23, 2022    Updated: Mar 26, 2022
Resolved Date: Feb 22, 2022
Found In Version: 10.21.20.1
Fix Version: 10.21.20.7
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the Linux kernel with a local user privilege access. In this flaw, an attempt to use more buffer than is allocated triggers a BUG_ON issue, leading to a denial of service (DOS).

https://nvd.nist.gov/vuln/detail/CVE-2022-0322

CVEs


Live chat
Online