CVE-2022-49260
CRITICALLinux Kernel 5.14-5.14, 5.15-5.15.33, 5.16-5.16.19, 5.17-5.17.2 - Denial of Service via AEAD Software Fallback
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec - fix the aead software fallback for engine Due to the subreq pointer misuse the private context memory. The aead soft crypto occasionally casues the OS panic as setting the 64K page. Here is fix it.
References (4)
Core 4
Core References
Scores
CVSS v3
9.8
EPSS
0.0064
EPSS Percentile
47.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
Status
published
Products (14)
linux/Kernel
5.14.0 - 5.15.33linux
linux/Kernel
5.16.0 - 5.16.19linux
linux/Kernel
5.17.0 - 5.17.2linux
Linux/Linux
< 5.14
Linux/Linux
5.14
Linux/Linux
5.15.33 - 5.15.*
Linux/Linux
5.16.19 - 5.16.*
Linux/Linux
5.17.2 - 5.17.*
Linux/Linux
5.18
Linux/Linux
6c46a3297beae4ae2d22b26da5e091f058381c7c - 0a2a464f863187f97e96ebc6384c052cafd4a54c
... and 4 more
Published
Feb 26, 2025
Tracked Since
Feb 18, 2026