CVE-2022-3624

CWE-404CWE-401Memory Leak6 documents6 sources
Severity
3.3LOW
EPSS
0.0%
top 93.05%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 21

Description

A vulnerability was found in Linux Kernel and classified as problematic. Affected by this issue is the function rlb_arp_xmit of the file drivers/net/bonding/bond_alb.c of the component IPsec. The manipulation leads to memory leak. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-211928.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:LExploitability: 2.1 | Impact: 1.4

Affected Packages1 packages

CVEListV5linux/kerneln/a

Patches

🔴Vulnerability Details

3
GHSA
GHSA-9wx5-5c3v-3qmx: A vulnerability was found in Linux Kernel and classified as problematic2022-10-21
OSV
CVE-2022-3624: A vulnerability was found in Linux Kernel and classified as problematic2022-10-21
CVEList
Linux Kernel IPsec bond_alb.c rlb_arp_xmit memory leak2022-10-21

📋Vendor Advisories

2
Red Hat
kernel: memory leak in the function rlb_arp_xmit for IPsec2022-08-10
Debian
CVE-2022-3624: linux - A vulnerability was found in Linux Kernel and classified as problematic. Affecte...2022
CVE-2022-3624 (LOW CVSS 3.3) | A vulnerability was found in Linux | cvebase.io