PT-2025-25996 · Linux+5 · Linux Kernel+5

Publicado

2022-08-04

·

Atualizado

2026-05-26

·

CVE-2022-50070

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.19.0-rc6-g2eae0556bb9d
Description A vulnerability in the Linux kernel has been resolved, related to the MultiPath TCP (MPTCP) protocol. The issue occurs when an MPTCP-level (re)transmit races with mptcp close() and the packet scheduler checks the subflow state before acquiring the socket lock, allowing data to be queued on closed subflows. The root cause is a race condition between the MPTCP (re)transmit and the mptcp close() function.
Recommendations For Linux kernel versions prior to 5.19.0-rc6-g2eae0556bb9d, update to a newer version that includes the fix for this issue. As a temporary workaround, consider disabling the MPTCP protocol until a patch is available. Restrict access to the vulnerable MPTCP module to minimize the risk of exploitation. Avoid using the MPTCP protocol in the affected Linux kernel versions until the issue is resolved.

Exploit

Correção

Improper Locking

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

AZL-70349
BDU:2026-03375
CESA-2023_2951
CVE-2022-50070
RHSA-2023:2458
RHSA-2023:2951
RHSA-2023_2458
RHSA-2023_2951
RHSA-2025:19222
USN-7909-1
USN-7909-2
USN-7909-3
USN-7909-4
USN-7909-5
USN-7910-1
USN-7910-2
USN-7933-1
USN-7938-1

Produtos afetados

Centos
Debian
Linuxmint
Linux Kernel
Red Hat
Ubuntu