Beveiligingsadvies

CVE-2022-4129

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-11-28 00:00:00
Laatst bijgewerkt 2025-04-14 18:09:26
Toegewezen door redhat
CVSS-score 5.5
Status PUBLISHED

Beschrijving

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.