PT-2024-11864 · Linux+2 · Linux Kernel+2

Published

2022-11-29

·

Updated

2025-02-13

·

CVE-2022-49001

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a race condition that occurs when detecting vmap stack overflow in the Linux kernel for riscv. Specifically, when two or more harts use the same shadow stack at the same time, a race condition arises. To address this, an atomic variable spin shadow stack is introduced, which is swapped between its own address and 0 in an atomic way. This variable indicates whether the shadow stack is being used or not.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Weakness Enumeration

Related Identifiers

BDU:2025-07502
CVE-2022-49001

Affected Products

Astra Linux
Linux Kernel
Red Os