CVE-2022-27666 log

Source
Severity High
Remote Unknown
Type Unknown
Description
A heap buffer overflow flaw was found in IPsec ESP transformation code in net/ipv4/esp4.c and net/ipv6/esp6.c. This flaw allows a local attacker with a normal user privilege to overwrite kernel heap objects and may cause a local privilege escalation threat.
Group Package Affected Fixed Severity Status Ticket
AVG-2701 linux-lts 5.15.14-1 High Vulnerable
AVG-2700 linux-hardened 5.16.20.hardened1-1 5.17.5.hardened1-1 High Fixed
AVG-2699 linux-zen 5.17.2.zen3-1 5.17.3.zen1-1 High Fixed
AVG-2698 linux 5.17.2.arch3-1 5.17.3.arch1-1 High Fixed
References
https://github.com/torvalds/linux/commit/ebe48d368e97d007bfeb76fcb065d6cfc4c96645
Notes
TODO