CVE-2022-4269

Updated: 2023-08-22 20:52:26.81272

Description:

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x MEDIUM 5.5

Status

OS name Project name Version Score Severity Status Errata Last updated
CentOS 6 ELS kernel 2.6.32 5.5 MEDIUM Ignored 2023-04-05 08:45:18
CentOS 8.4 ELS kernel 4.18.0 5.5 MEDIUM Ignored 2023-04-14 03:24:55
CentOS 8.5 ELS kernel 4.18.0 5.5 MEDIUM Ignored 2023-04-14 03:24:55
CloudLinux 6 ELS kernel 2.6.32 5.5 MEDIUM Ignored 2023-04-05 08:45:19
Oracle Linux 6 ELS kernel 2.6.32 5.5 MEDIUM Ignored 2023-04-05 08:45:18
Ubuntu 16.04 ELS linux-hwe 4.15.0 5.5 MEDIUM Released CLSA-2023:1695144235 2023-09-19 17:07:01
Ubuntu 18.04 ELS linux 4.15.0 5.5 MEDIUM Released CLSA-2023:1695041084 2023-09-18 09:29:20