CVE-2022-1353

Summary

A vulnerability was found in the pfkey_register function in net/key/af_key.c in the Linux kernel. This flaw allows a local, unprivileged user to gain access to kernel memory, leading to a system crash or a leak of internal kernel information.

Affected Software

VendorProductVersion RangeStatus
Linuxkernel0 < 4.9.311affected
Linuxkernel4.10 < 4.14.276affected
Linuxkernel4.15 < 4.19.238affected
Linuxkernel4.20 < 5.4.189affected
Linuxkernel5.5 < 5.10.110affected
Linuxkernel5.11 < 5.15.33affected
Linuxkernel5.16 < 5.16.19affected

Weaknesses

  • CWE-200: CWE-200

ADP Enrichment

CVE Program Container

Additional References

References