{"schema_version":"1.9.0","id":"CVE-2022-3028","published":"2022-08-31T00:00:00Z","modified":"2026-08-12T03:51:44.328245549Z","related":["ALSA-2023:2148","ALSA-2023:2458","ALSA-2023:2736","ALSA-2023:2951","SUSE-SU-2022:3263-1","SUSE-SU-2022:3264-1","SUSE-SU-2022:3265-1","SUSE-SU-2022:3274-1","SUSE-SU-2022:3282-1","SUSE-SU-2022:3288-1","SUSE-SU-2022:3291-1","SUSE-SU-2022:3293-1","SUSE-SU-2022:3294-1","SUSE-SU-2022:3408-1","SUSE-SU-2022:3422-1","SUSE-SU-2022:3450-1","SUSE-SU-2022:3609-1","SUSE-SU-2022:3809-1","SUSE-SU-2022:4617-1","SUSE-SU-2023:0416-1"],"details":"A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurred simultaneously. This flaw could allow a local attacker to potentially trigger an out-of-bounds write or leak kernel heap memory by performing an out-of-bounds read and copying it into a socket.","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/torvalds/linux","events":[{"introduced":"b90cb1053190353cc30f0fef0ef1f378ccc063c5"},{"last_affected":"b90cb1053190353cc30f0fef0ef1f378ccc063c5"}],"database_specific":{"extracted_events":[{"introduced":"Fixed in kernel 6.0-rc3"},{"last_affected":"Fixed in kernel 6.0-rc3"}],"source":"AFFECTED_FIELD"}}],"versions":["Fixed in kernel 6.0-rc3","v6.0-rc3"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-3028.json"}}],"references":[{"type":"WEB","url":"https://lore.kernel.org/all/YtoWqEkKzvimzWS5%40gondor.apana.org.au/T/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/3xxx/CVE-2022-3028.json"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F3MYP7WX4PNE6RCITVXA43CECBZT4CL6/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JKVA75UHKVOHNOEPCLUHTFGWCOOUBDM3/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PEQYVCNYUWB4CJ2YRAYNF2GGFQ7SUYC4/"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-3028"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20230214-0004/"},{"type":"FIX","url":"https://github.com/torvalds/linux/commit/ba953a9d89a00c078b85f4b190bc1dde66fe16b5"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2022/10/msg00000.html"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html"}],"database_specific":{"cna_assigner":"redhat","cwe_ids":["CWE-667"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/3xxx/CVE-2022-3028.json"}}