cbcvebase.
CVE-2022-2132
published 2022-08-31

CVE-2022-2132: A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service triggered by sending a crafted…

high8.6CVSS 3.1
AVNACLPRNUINSCCNINAH
A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service triggered by sending a crafted Vhost header to DPDK.

Affected

19 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandpdk< dpdk 22.11.1-2 (bookworm)dpdk 22.11.1-2 (bookworm)
dpdkdata_plane_development_kit< 19.1119.11
dpdkdata_plane_development_kit>= 20.0 < 20.1120.11
dpdkdata_plane_development_kit>= 21.0 < 21.1121.11
dpdkdpdk>= 0 < 20.11.6-1~deb11u120.11.6-1~deb11u1
dpdkdpdk>= 0 < 22.11.1-222.11.1-2
dpdkdpdk>= 0 < 22.11.1-222.11.1-2
dpdkdpdk>= 0 < 22.11.1-222.11.1-2
fedoraprojectfedora
redhatenterprise_linux
redhatenterprise_linux
redhatenterprise_linux
redhatenterprise_linux_fast_datapath
redhatenterprise_linux_fast_datapath
redhatenterprise_linux_fast_datapath
redhatopenshift_container_platform
redhatopenstack_platform
redhatvirtualization

CVSS provenance

nvdv3.18.6HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
osv8.6HIGH