Vulnerabilities > CVE-2022-0435 - Out-of-bounds Write vulnerability in multiple products

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH

Summary

A stack overflow flaw was found in the Linux kernel's TIPC protocol functionality in the way a user sends a packet with malicious content where the number of domain member nodes is higher than the 64 allowed. This flaw allows a remote user to crash the system or possibly escalate their privileges if they have access to the TIPC network.

Vulnerable Configurations

Part Description Count
OS
Linux
1790
OS
Redhat
23
OS
Ovirt
1
OS
Fedoraproject
2
OS
Netapp
7
Application
Redhat
8
Hardware
Netapp
7

Common Weakness Enumeration (CWE)