ZeroHour

CVE-2022-0322

CVSS 3.1
5.5 medium
EPSS
<1%p22
Published
()
Modified
Description

A flaw was found in the sctp_make_strreset_req function in net/sctp/sm_make_chunk.c in the SCTP network protocol in the Linux kernel with a local user privilege access. In this flaw, an attempt to use more buffer than is allocated triggers a BUG_ON issue, leading to a denial of service (DOS).

Vendors
linuxfedoraprojectoracle
Products
linux kernel, fedora, communications cloud native core binding support function, communications cloud native core network exposure function, communications cloud native core policy
Weakness
CWE-681, CWE-704
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.