PT-2025-18505 · Linux+6 · Linux Kernel+6

Published

2022-11-09

·

Updated

2025-08-05

·

CVE-2022-49788

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability has been resolved in the Linux kernel, specifically in the vmci host do receive datagram() function. The issue is related to an information leak, where the struct vmci event qp allocated by qp notify peer() contains padding that may carry uninitialized data to userspace. This was observed by KMSAN, which reported a kernel-infoleak in instrument copy to user(). The vulnerability may allow unauthorized access to sensitive information.
Recommendations To resolve the issue, use memset() to prevent information leaks. Additionally, it is recommended to speculatively fix qp notify peer local(), which may suffer from the same problem. As a temporary workaround, consider restricting access to the vulnerable vmci host do receive datagram() function until a patch is available.

Exploit

Fix

Use of Uninitialized Resource

Access of Uninitialized Pointer

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:11298
ALSA-2025:11299
ALSA-2025:12746
BDU:2026-03966
CESA-2025_11298
CESA-2025_11299
CVE-2022-49788
INFSA-2025_11298
INFSA-2025_11299
INFSA-2025_12746
OESA-2025-1569
RHSA-2025:11298
RHSA-2025:11299
RHSA-2025:12746
RHSA-2025:13029
RHSA-2025:13030
RHSA-2025:13061
RHSA-2025:13120
RHSA-2025:13135
RHSA-2025:13633
RHSA-2025:13776
RHSA-2025:13781
RHSA-2025:14136
RHSA-2025:14746
RHSA-2025:14748
RHSA-2025_11298
RHSA-2025_11299
RHSA-2025_12746
SUSE-SU-2025:01918-1
SUSE-SU-2025:01966-1
SUSE-SU-2025:01982-1
SUSE-SU-2025:01983-1
SUSE-SU-2025:01995-1
SUSE-SU-2025:02173-1
SUSE-SU-2025:02262-1
SUSE-SU-2025:2173-1
SUSE-SU-2025_01982-1
SUSE-SU-2025_01983-1
SUSE-SU-2025_02173-1
SUSE-SU-2025_02262-1

Affected Products

Almalinux
Astra Linux
Centos
Linux Kernel
Red Hat
Rocky Linux
Suse