-

CVE-2022-50764

In the Linux kernel, the following vulnerability has been resolved:

ipv6/sit: use DEV_STATS_INC() to avoid data-races

syzbot/KCSAN reported that multiple cpus are updating dev->stats.tx_error
concurrently.

This is because sit tunnels are NETIF_F_LLTX, meaning their ndo_start_xmit()
is not protected by a spinlock.

While original KCSAN report was about tx path, rx path has the same issue.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 222cc04356984f3f98acfa756a69d4bed7c501ac
Version 8df40d1033d64597dcf1efd4f7547e817f7a953b
Status affected
Version < 4eed93bb3e57b8cc78d17166a14e40a73276015a
Version 8df40d1033d64597dcf1efd4f7547e817f7a953b
Status affected
Version < 207501a986831174df09a36a8cb62a28f92f0dc8
Version 8df40d1033d64597dcf1efd4f7547e817f7a953b
Status affected
Version < cb34b7cf17ecf33499c9298943f85af247abc1e9
Version 8df40d1033d64597dcf1efd4f7547e817f7a953b
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 2.6.37
Status affected
Version < 2.6.37
Version 0
Status unaffected
Version <= 5.15.*
Version 5.15.86
Status unaffected
Version <= 6.0.*
Version 6.0.16
Status unaffected
Version <= 6.1.*
Version 6.1.2
Status unaffected
Version <= *
Version 6.2
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.064
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.