CVE-2022-3635

CVSS v3.1 7 (High)
70% Progress
EPSS 0.08 % (33th)
0.08% Progress
Affected Products 2
Advisories 27

A vulnerability, which was classified as critical, has been found in Linux Kernel. Affected by this issue is the function tst_timer of the file drivers/atm/idt77252.c of the component IPsec. The manipulation leads to use after free. It is recommended to apply a patch to fix this issue. VDB-211934 is the identifier assigned to this vulnerability.

Weaknesses
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE Status
PUBLISHED
CNA
VulDB
Published Date
2022-10-21 11:15:09
(23 months ago)
Updated Date
2023-11-07 03:51:33
(10 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 2.6.12 version and prior 4.9.326 version cpe:2.3:o:linux:linux_kernel >= 2.6.12 < 4.9.326
  Linux Kernel from 4.10 version and prior 4.14.291 version cpe:2.3:o:linux:linux_kernel >= 4.10 < 4.14.291
  Linux Kernel from 4.15 version and prior 4.19.256 version cpe:2.3:o:linux:linux_kernel >= 4.15 < 4.19.256
  Linux Kernel from 4.20 version and prior 5.4.211 version cpe:2.3:o:linux:linux_kernel >= 4.20 < 5.4.211
  Linux Kernel from 5.5 version and prior 5.10.138 version cpe:2.3:o:linux:linux_kernel >= 5.5 < 5.10.138
  Linux Kernel from 5.11 version and prior 5.15.63 version cpe:2.3:o:linux:linux_kernel >= 5.11 < 5.15.63
  Linux Kernel from 5.16 version and prior 5.19.4 version cpe:2.3:o:linux:linux_kernel >= 5.16 < 5.19.4

Configuration #2

    CPE23 From Up To
  Debian Linux 10.0 cpe:2.3:o:debian:debian_linux:10.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...