CVE-2022-4129

5.5MEDIUM

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use th

Published: 11/28/2022Updated: 4/14/2025

Description

A flaw was found in the Linux kernel's Layer 2 Tunneling Protocol (L2TP). A missing lock when clearing sk_user_data can lead to a race condition and NULL pointer dereference. A local user could use this flaw to potentially crash the system causing a denial of service.

AI AnalysisPowered by AI

Affected Products

linuxlayer_2_tunneling_protocol
fedoraprojectfedora
35
fedoraprojectfedora
36
fedoraprojectfedora
37

References