A vulnerability, which was classified as critical, has been found in Linux Kernel. Affected by this issue is the function tst_timer of the file drivers/atm/idt77252.c of the component IPsec. The manipulation leads to use after free. It is recommended to apply a patch to fix this issue. VDB-211934 is the identifier assigned to this vulnerability.
                
            References
                    | Link | Resource | 
|---|---|
| https://git.kernel.org/pub/scm/linux/kernel/git/klassert/ipsec-next.git/commit/?id=3f4093e2bf4673f218c0bf17d8362337c400e77b | Exploit Mailing List Patch Vendor Advisory | 
| https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html | Mailing List Third Party Advisory | 
| https://vuldb.com/?id.211934 | Third Party Advisory | 
| https://git.kernel.org/pub/scm/linux/kernel/git/klassert/ipsec-next.git/commit/?id=3f4093e2bf4673f218c0bf17d8362337c400e77b | Exploit Mailing List Patch Vendor Advisory | 
| https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html | Mailing List Third Party Advisory | 
| https://vuldb.com/?id.211934 | Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
History
                    21 Nov 2024, 07:19
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 5.5 | 
| References | () https://git.kernel.org/pub/scm/linux/kernel/git/klassert/ipsec-next.git/commit/?id=3f4093e2bf4673f218c0bf17d8362337c400e77b - Exploit, Mailing List, Patch, Vendor Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html - Mailing List, Third Party Advisory | |
| References | () https://vuldb.com/?id.211934 - Third Party Advisory | 
21 Jul 2023, 20:09
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-416 | CWE-362 | 
26 May 2023, 19:42
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 
Information
                Published : 2022-10-21 11:15
Updated : 2024-11-21 07:19
NVD link : CVE-2022-3635
Mitre link : CVE-2022-3635
CVE.ORG link : CVE-2022-3635
JSON object : View
Products Affected
                debian
- debian_linux
linux
- linux_kernel
