A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.
References
Configurations
History
No history.
Information
Published : 2022-11-28 22:15
Updated : 2023-11-07 03:57
NVD link : CVE-2022-4129
Mitre link : CVE-2022-4129
CVE.ORG link : CVE-2022-4129
JSON object : View
Products Affected
fedoraproject
- fedora
linux
- layer_2_tunneling_protocol
CWE
CWE-667
Improper Locking