CNNVD-202509-2209 Information

CNNVD ID

CNNVD-202509-2209

CVE-2022-50243

  • CNNVD Published: 2025-09-15

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于sctp_auth_asoc_init_active_key错误处理不当,可能导致释放后重用。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the mishandling of sctp auth asoc init active key, which may lead to reuse after release.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-09-15

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/022152aaebe116a25c39818a07e175a8cd3c1e11 https://git.kernel.org/stable/c/0f90099d18e3abdc01babf686f41f63fe04939c1 https://git.kernel.org/stable/c/19d636b663e0e92951bba5fced929ca7fd25c552 https://git.kernel.org/stable/c/382ff44716603a54f5fd238ddec6a2468e217612 https://git.kernel.org/stable/c/3b0fcf5e29c0940e1169ce9c44f73edd98bdf12d https://git.kernel.org/stable/c/b8fa99a3a11bdd77fef6b4a97f1021eb30b5ba40 https://git.kernel.org/stable/c/f65955340e0044f5c41ac799a01698ac7dee8a4e https://access.redhat.com/security/cve/cve-2022-50243

Patch

https://www.kernel.org/

Share on: