CVE-2022-49356

CRITICAL

Linux Kernel 5.11-5.15.46, 5.16-5.17.14, 5.18-5.18.3 - Denial of Service via RDMA Segment Overflow

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Trap RDMA segment overflows Prevent svc_rdma_build_writes() from walking off the end of a Write chunk's segment array. Caught with KASAN. The test that this fix replaces is invalid, and might have been left over from an earlier prototype of the PCL work.

Scores

CVSS v3 9.8
EPSS 0.0065
EPSS Percentile 47.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (15)
linux/Kernel 5.11.0 - 5.15.47linux
linux/Kernel 5.16.0 - 5.17.15linux
linux/Kernel 5.18.0 - 5.18.4linux
Linux/Linux < 5.11
Linux/Linux 5.11
Linux/Linux 5.15.47 - 5.15.*
Linux/Linux 5.17.15 - 5.17.*
Linux/Linux 5.18.4 - 5.18.*
Linux/Linux 5.19
Linux/Linux 7a1cbfa18059a40d4752dab057384c3ca2de326c - 659f7568e09593945c221bf20217a82ebdfe1328
... and 5 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026