CVE-2022-49260

CRITICAL

Linux Kernel 5.14-5.14, 5.15-5.15.33, 5.16-5.16.19, 5.17-5.17.2 - Denial of Service via AEAD Software Fallback

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec - fix the aead software fallback for engine Due to the subreq pointer misuse the private context memory. The aead soft crypto occasionally casues the OS panic as setting the 64K page. Here is fix it.

Scores

CVSS v3 9.8
EPSS 0.0064
EPSS Percentile 47.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (14)
linux/Kernel 5.14.0 - 5.15.33linux
linux/Kernel 5.16.0 - 5.16.19linux
linux/Kernel 5.17.0 - 5.17.2linux
Linux/Linux < 5.14
Linux/Linux 5.14
Linux/Linux 5.15.33 - 5.15.*
Linux/Linux 5.16.19 - 5.16.*
Linux/Linux 5.17.2 - 5.17.*
Linux/Linux 5.18
Linux/Linux 6c46a3297beae4ae2d22b26da5e091f058381c7c - 0a2a464f863187f97e96ebc6384c052cafd4a54c
... and 4 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026