PT-2024-11853 · Linux+2 · Linux Kernel+2

Daire Byrne

·

Published

2022-12-07

·

Updated

2025-09-29

·

CVE-2022-48989

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.0.0-5.dneg.x86 64
Description A vulnerability has been resolved in the Linux kernel, specifically in the fscache component. The issue occurs due to a race condition between the cookie lru and use cookie functions. When a cookie expires from the LRU and the LRU DISCARD flag is set, but the state machine has not run yet, another thread can call fscache use cookie and begin to use it. This can lead to a kernel NULL pointer dereference when the cookie worker finally runs and withdraws the cookie. The vulnerability is fixed by clearing the LRU DISCARD bit if another thread uses the cookie before the cookie worker runs.
Recommendations To resolve the issue, update the Linux kernel to a version that includes the fix for this vulnerability. As a temporary workaround, consider disabling the fscache use cookie function until a patch is available. Restrict access to the vulnerable cachefiles prepare write function to minimize the risk of exploitation. Avoid using the cookie lru and use cookie functions in conjunction until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
BDU:2025-14603
CVE-2022-48989
INFSA-2025_6966
OPENSUSE-SU-2024_4315-1
OPENSUSE-SU-2024_4376-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2024:4315-1
SUSE-SU-2024:4364-1
SUSE-SU-2024:4376-1

Affected Products

Linux Kernel
Red Hat
Suse