A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.
References
Configurations
History
No history.
Information
Published : 2022-11-28 22:15
Updated : 2025-04-14 18:15
NVD link : CVE-2022-4129
Mitre link : CVE-2022-4129
CVE.ORG link : CVE-2022-4129
JSON object : View
Products Affected
linux
- layer_2_tunneling_protocol
fedoraproject
- fedora
CWE
CWE-667
Improper Locking