Skip to content

kernel CVE-2022-4269

Moderate
cbgbt published GHSA-vp38-4w42-hx5x May 12, 2023

Package

kernel-5.15 (bottlerocket)

Affected versions

< 1.14.0

Patched versions

1.14.0

Description

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. A specific networking configuration which redirects egress packets to ingress using TC action "mirred" could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition.

Severity

Moderate

CVE ID

CVE-2022-4269

Weaknesses

No CWEs