Lucene search

K
cvelistRedhatCVELIST:CVE-2022-4269
HistoryDec 05, 2022 - 12:00 a.m.

CVE-2022-4269

2022-12-0500:00:00
CWE-833
redhat
www.cve.org
11
linux kernel
traffic control
tcp protocol
sctp protocol
denial of service

AI Score

6.3

Confidence

High

EPSS

0

Percentile

5.1%

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action “mirred”) a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Linux kernel (TC subsystem)",
    "versions": [
      {
        "version": "Since upstream commit 53592b3 (v4.10-rc1)",
        "status": "affected"
      }
    ]
  }
]