Executive Summary



This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Informations
Name CVE-2022-3028 First vendor Publication 2022-08-31
Vendor Cve Last vendor Modification 2023-11-07

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Overall CVSS Score 7
Base Score 7 Environmental Score 7
impact SubScore 5.9 Temporal Score 7
Exploitabality Sub Score 1
 
Attack Vector Local Attack Complexity High
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact High
Integrity Impact High Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurred simultaneously. This flaw could allow a local attacker to potentially trigger an out-of-bounds write or leak kernel heap memory by performing an out-of-bounds read and copying it into a socket.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3028

CWE : Common Weakness Enumeration

% Id Name
50 % CWE-787 Out-of-bounds Write (CWE/SANS Top 25)
50 % CWE-362 Race Condition

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 1
Os 3
Os 3489

Sources (Detail)

https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedora...
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedora...
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedora...
https://lore.kernel.org/all/YtoWqEkKzvimzWS5%40gondor.apana.org.au/T/
Source Url
CONFIRM https://security.netapp.com/advisory/ntap-20230214-0004/
MISC https://github.com/torvalds/linux/commit/ba953a9d89a00c078b85f4b190bc1dde66fe...
MLIST https://lists.debian.org/debian-lts-announce/2022/10/msg00000.html
https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
Date Informations
2024-03-12 13:26:01
  • Multiple Updates
2024-02-02 02:35:09
  • Multiple Updates
2024-02-01 12:27:00
  • Multiple Updates
2024-01-12 02:27:28
  • Multiple Updates
2023-12-29 02:25:14
  • Multiple Updates
2023-11-22 02:24:36
  • Multiple Updates
2023-11-07 21:31:42
  • Multiple Updates
2023-09-29 13:19:08
  • Multiple Updates
2023-09-05 13:29:37
  • Multiple Updates
2023-09-05 01:26:26
  • Multiple Updates
2023-09-02 13:27:45
  • Multiple Updates
2023-09-02 01:26:50
  • Multiple Updates
2023-08-12 13:34:15
  • Multiple Updates
2023-08-12 01:26:06
  • Multiple Updates
2023-08-11 13:25:54
  • Multiple Updates
2023-08-11 01:26:56
  • Multiple Updates
2023-08-06 13:23:44
  • Multiple Updates
2023-08-06 01:25:50
  • Multiple Updates
2023-08-04 13:24:09
  • Multiple Updates
2023-08-04 01:26:11
  • Multiple Updates
2023-07-14 13:24:10
  • Multiple Updates
2023-07-14 01:25:56
  • Multiple Updates
2023-06-06 13:15:08
  • Multiple Updates
2023-05-31 00:27:44
  • Multiple Updates
2023-05-30 21:26:51
  • Multiple Updates
2023-05-27 00:27:51
  • Multiple Updates
2023-05-17 13:08:31
  • Multiple Updates
2023-04-13 02:12:52
  • Multiple Updates
2023-04-07 13:10:07
  • Multiple Updates
2023-03-30 13:08:11
  • Multiple Updates
2023-03-29 02:25:35
  • Multiple Updates
2023-03-28 12:26:04
  • Multiple Updates
2023-03-25 02:12:41
  • Multiple Updates
2023-02-14 17:27:35
  • Multiple Updates
2023-01-25 02:12:46
  • Multiple Updates
2023-01-20 02:12:17
  • Multiple Updates
2022-12-17 02:10:47
  • Multiple Updates
2022-11-22 00:27:29
  • Multiple Updates
2022-11-02 05:27:35
  • Multiple Updates
2022-10-19 02:08:45
  • Multiple Updates
2022-10-11 05:27:23
  • Multiple Updates
2022-10-11 01:25:09
  • Multiple Updates
2022-10-06 21:27:22
  • Multiple Updates
2022-10-03 00:27:27
  • Multiple Updates
2022-09-08 21:27:14
  • Multiple Updates
2022-09-08 00:27:12
  • Multiple Updates
2022-09-03 09:27:14
  • Multiple Updates
2022-09-02 17:27:18
  • Multiple Updates
2022-08-31 21:27:12
  • First insertion