Description
An issue was discovered in the Linux kernel through 5.18.14. xfrm_expand_policies in net/xfrm/xfrm_policy.c can cause a refcount to be dropped twice.
Related CPE's
Vulnerable
o
debian
debian_linux
2
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
Vulnerable
References
Mailing ListPatchThird Party Advisory
https://github.com/torvalds/linux/commit/f85daf0e725358be78dfd208dea5fd665d8cb901
PatchThird Party Advisory
https://lists.debian.org/debian-lts-announce/2022/09/msg00011.html
Mailing ListThird Party Advisory
https://lists.debian.org/debian-lts-announce/2022/10/msg00000.html
Mailing ListThird Party Advisory
https://security.netapp.com/advisory/ntap-20220901-0007/
Third Party Advisory
https://www.debian.org/security/2022/dsa-5207
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
5.5 · Medium
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Analyzed
Published
2022-07-27T04:15:10.740
2 years agoLast modified
2022-11-04T18:15:44.327
2 years ago