CVE-2022-0669 - log back

CVE-2022-0669 edited at 13 May 2022 09:24:36
Remote
- Unknown
+ Local
CVE-2022-0669 edited at 09 May 2022 21:25:23
Type
- Unknown
+ Denial of service
Description
+ A malicious vhost-user master can attach an unexpected number of fds as ancillary data to VHOST_USER_GET_INFLIGHT_FD / VHOST_USER_SET_INFLIGHT_FD messages that are not closed by the vhost-user slave. By sending such messages continuously, the vhost-user master could exhaust available fd in the vhost-user slave process and lead to a DoS.
CVE-2022-0669 edited at 09 May 2022 21:24:12
Severity
- Unknown
+ Medium
CVE-2022-0669 edited at 09 May 2022 21:21:41
Description
References
+ https://bugs.dpdk.org/show_bug.cgi?id=922
+ https://github.com/DPDK/dpdk/commit/af74f7db384ed149fe42b21dbd7975f8a54ef227
+ https://github.com/DPDK/dpdk/commit/d87f1a1cb7b666550bb53e39c1d85d9f7b861e6f
Notes
CVE-2022-0669 created at 09 May 2022 21:20:03