CVE-2022-36946

CVSS v3.1 7.5 (High)
75% Progress
EPSS 0.90 % (83th)
0.90% Progress
Affected Products 7
Advisories 59

nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encounter a negative skb->len.

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2022-07-27 20:15:08
(2 years ago)
Updated Date
2024-03-25 01:15:51
(5 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 2.6.14 version and prior 4.9.326 version cpe:2.3:o:linux:linux_kernel >= 2.6.14 < 4.9.326
  Linux Kernel from 4.10 version and prior 4.14.291 version cpe:2.3:o:linux:linux_kernel >= 4.10 < 4.14.291
  Linux Kernel from 4.15 version and prior 4.19.255 version cpe:2.3:o:linux:linux_kernel >= 4.15 < 4.19.255
  Linux Kernel from 4.20 version and prior 5.4.209 version cpe:2.3:o:linux:linux_kernel >= 4.20 < 5.4.209
  Linux Kernel from 5.5 version and prior 5.10.135 version cpe:2.3:o:linux:linux_kernel >= 5.5 < 5.10.135
  Linux Kernel from 5.11 version and prior 5.15.59 version cpe:2.3:o:linux:linux_kernel >= 5.11 < 5.15.59
  Linux Kernel from 5.16 version and prior 5.18.16 version cpe:2.3:o:linux:linux_kernel >= 5.16 < 5.18.16

Configuration #2

    CPE23 From Up To
  Debian Linux 10.0 cpe:2.3:o:debian:debian_linux:10.0
  Debian Linux 11.0 cpe:2.3:o:debian:debian_linux:11.0

Configuration #3

    CPE23 From Up To
  Netapp Active Iq Unified Manager for Vmware Vsphere cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere
  Netapp Solidfire & Hci Management Node cpe:2.3:a:netapp:solidfire_\%26_hci_management_node:-
  Netapp Solidfire & Hci Storage Node cpe:2.3:a:netapp:solidfire_\%26_hci_storage_node:-
  Netapp Solidfire Enterprise Sds cpe:2.3:a:netapp:solidfire_enterprise_sds:-
  Netapp Hci Compute Node cpe:2.3:h:netapp:hci_compute_node:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...