CVE-2022-3594 is a medium-severity vulnerability in the Linux Kernel, specifically affecting the intr_callback function within the r8152.c driver for USB network adapters. This flaw, categorized as a denial of service (CWE-404), can lead to excessive data logging and impacts Debian Linux distributions. With a CVSS score of 5.3, this vulnerability can be exploited remotely without authentication (AV:N/AC:L/PR:N/UI:N), resulting in a low impact on availability (A:L). The attack complexity is low, making it relatively easy to trigger the excessive logging. There is currently no evidence of active exploitation, nor are there publicly available exploit modules in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, indicating a low level of public attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 6.1CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
10.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.