Vulnerabilities > CVE-2022-0286 - NULL Pointer Dereference vulnerability in multiple products
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
A flaw was found in the Linux kernel. A null pointer dereference in bond_ipsec_add_sa() may lead to local denial of service.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 | |
Application | 3 |
Common Weakness Enumeration (CWE)
References
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=105cd17a866017b45f3c45901b394c711c97bf40
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=105cd17a866017b45f3c45901b394c711c97bf40
- https://syzkaller.appspot.com/bug?id=160f641886d88bf11cbf1236cc4db994bb210626
- https://syzkaller.appspot.com/bug?id=160f641886d88bf11cbf1236cc4db994bb210626
- https://www.oracle.com/security-alerts/cpujul2022.html
- https://www.oracle.com/security-alerts/cpujul2022.html