VYPR
Unrated severityNVD Advisory· Published Mar 23, 2022· Updated Aug 3, 2024

CVE-2022-27666

CVE-2022-27666

Description

A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation threat.

Affected products

1
  • Linux kernel/IPsec ESP transformationdescription

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

1