Wind River Support Network

HomeDefectsLIN1021-2654
Fixed

LIN1021-2654 : Security Advisory - linux - CVE-2022-0382

Created: Jan 29, 2022    Updated: Jun 10, 2022
Resolved Date: Jun 10, 2022
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

An information leak flaw was found due to uninitialized memory in the Linux kernel’s TIPC protocol subsystem, in the way a user sends a TIPC datagram to one or more destinations. This flaw allows a local user to read some kernel memory. This issue is limited to no more than 7 bytes, and the user cannot control what is read. This flaw affects the Linux kernel versions prior to 5.17-rc1.

https://nvd.nist.gov/vuln/detail/CVE-2022-0382
Live chat
Online