A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.
References
Information
Published : 2022-11-28 14:15
Updated : 2023-02-12 14:15
NVD link : CVE-2022-4129
Mitre link : CVE-2022-4129
JSON object : View
CWE
Products Affected
fedoraproject
- fedora
linux
- layer_2_tunneling_protocol