CVE Published: 28/11/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: redhat |
Vendor: n/a |
Product: Linux kernel (l2tp) Status : PUBLISHED
CVE-2022-4129 Description
A flaw was found in the Linux kernel\'s Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.