PT-2025-8642 · Linux+1 · Linux Kernel+1

Sami Tolvanen

·

Publicado

2022-06-13

·

Atualizado

2025-02-27

·

CVE-2022-49709

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been identified, related to the usage of RCU NONIDLE during the cfi slowpath diag function. This can result in an invalid RCU state in the cpuidle code path, leading to warnings and potential issues. The problem arises from the incorrect usage of RCU NONIDLE, which can cause the RCU state to become invalid when the cpuidle code path is executed. To address this, the solution involves calling rcu irq enter and rcu irq exit to wake up RCU only when necessary and disabling interrupts for the entire CFI shadow/module check.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-03883
CVE-2022-49709

Produtos afetados

Astra Linux
Linux Kernel