CVE-2022-50243 | Linux Kernel up to 6.0.2 sctp sctp_auth_asoc_init_active_key use after free (Nessus ID 265163 / WID-SEC-2025-2053)
A vulnerability was found in Linux Kernel up to 6.0.2. It has been declared as critical. This affects the function sctp_auth_asoc_init_active_key of the component sctp. The manipulation results in use after free.
This vulnerability is reported as CVE-2022-50243. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.