4.7

CVE-2022-49593

tcp: Fix a data-race around sysctl_tcp_probe_interval.

In the Linux kernel, the following vulnerability has been resolved:

tcp: Fix a data-race around sysctl_tcp_probe_interval.

While reading sysctl_tcp_probe_interval, it can be changed concurrently.
Thus, we need to add READ_ONCE() to its reader.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 4.1 < 4.14.290
Linux ≫ Linux Kernel Version >= 4.15 < 4.19.254
Linux ≫ Linux Kernel Version >= 4.20 < 5.4.208
Linux ≫ Linux Kernel Version >= 5.5 < 5.10.134
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.58
Linux ≫ Linux Kernel Version >= 5.16 < 5.18.15
Linux ≫ Linux Kernel Version 5.19 Update rc1
Linux ≫ Linux Kernel Version 5.19 Update rc2
Linux ≫ Linux Kernel Version 5.19 Update rc3
Linux ≫ Linux Kernel Version 5.19 Update rc4
Linux ≫ Linux Kernel Version 5.19 Update rc5
Linux ≫ Linux Kernel Version 5.19 Update rc6
Linux ≫ Linux Kernel Version 5.19 Update rc7
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.19% 0.085
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.7 1 3.6
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
CISA-ADP 4.7 1 3.6
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

https://git.kernel.org/stable/c/2a85388f1d94a9f8b5a529118a2c5eaa0520d85c
Patch
https://git.kernel.org/stable/c/73a11588751a2c13f25d9da8117efc9a79b1843f
Patch
https://git.kernel.org/stable/c/80dabd089086e6553b7acfcff2ec223bdada87a1
Patch
https://git.kernel.org/stable/c/b14cc8afbbcbc6dce4797913c0b85266b897f541
Patch
https://git.kernel.org/stable/c/b3798d3519eda9c409bb0815b0102f27ec42468d
Patch
https://git.kernel.org/stable/c/c61aede097d350d890fa1edc9521b0072e14a0b8
Patch
https://git.kernel.org/stable/c/e6b6f027e2854a51f345a5e3e808d7a88001d4f8
Patch