Vulnerabilities > CVE-2022-1671 - NULL Pointer Dereference vulnerability in multiple products

047910
CVSS 7.1 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
linux
netapp
CWE-476

Summary

A NULL pointer dereference flaw was found in rxrpc_preparse_s in net/rxrpc/server_key.c in the Linux kernel. This flaw allows a local attacker to crash the system or leak internal kernel information.

Vulnerable Configurations

Part Description Count
OS
Linux
195
OS
Netapp
5
Hardware
Netapp
5

Common Weakness Enumeration (CWE)