UBUNTU-CVE-2022-4129
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-4129
UBUNTU-CVE-2022-4129
Summary:
Details: A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.
References: https://ubuntu.com/security/CVE-2022-4129, https://lore.kernel.org/all/[email protected]/t, https://lore.kernel.org/netdev/[email protected]/t, https://ubuntu.com/security/notices/USN-6025-1, https://ubuntu.com/security/notices/USN-6027-1, https://ubuntu.com/security/notices/USN-6040-1, https://ubuntu.com/security/notices/USN-6057-1, https://ubuntu.com/security/notices/USN-6079-1, https://ubuntu.com/security/notices/USN-6091-1, https://ubuntu.com/security/notices/USN-6093-1, https://ubuntu.com/security/notices/USN-6096-1, https://ubuntu.com/security/notices/USN-6134-1, https://ubuntu.com/security/notices/USN-6222-1, https://ubuntu.com/security/notices/USN-6256-1, https://www.cve.org/CVERecord?id=CVE-2022-4129
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
