Lucene search

K
osvGoogleOSV:USN-5357-2
HistoryMar 31, 2022 - 10:14 p.m.

linux-aws-hwe, linux-azure, linux-gcp, linux-gcp-4.15, linux-oracle, linux-raspi2 vulnerability

2022-03-3122:14:36
Google
osv.dev
10

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

It was discovered that the IPsec implementation in the Linux kernel did not
properly allocate enough memory when performing ESP transformations,
leading to a heap-based buffer overflow. A local attacker could use this to
cause a denial of service (system crash) or possibly execute arbitrary
code.