IT

Tracker / CVE-2022-0322

CVE-2022-0322

Medium 5.5

A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the Linux kernel with a local user privilege access. In this flaw, an attempt to use more buffer than is allocated triggers a BUG_ON issue, leading to a denial of service (DOS).

Affected products and versions

fedoraproject fedora
linux linux_kernel
linux linux_kernel · … → 5.15
oracle communications_cloud_native_core_binding_support_function
oracle communications_cloud_native_core_network_exposure_function
oracle communications_cloud_native_core_policy

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References