Infinite Loop Issue in DNS Proxy of Connman by the Linux Foundation
CVE-2022-23098

7.5HIGH

Key Information:

Vendor
Intel
Status
Vendor
CVE Published:
28 January 2022

Summary

A vulnerability has been identified in the DNS proxy of Connman, where the TCP server's reply implementation can lead to an infinite loop if no data is received. This can potentially cause the service to become unresponsive, affecting network operations and system stability. Users of affected versions should take necessary actions to mitigate the problem.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.