PT-2025-18516 · Linux+2 · Linux Kernel+2

Published

2022-11-17

·

Updated

2025-07-10

·

CVE-2022-49799

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.1.0-rc1-00186-g76f33a7eedb4
Description A bug in the Linux kernel's tracing system has been fixed, which caused a wild-memory-access issue in the register synth event() function. If set synth event print fmt() failed, both trace remove event call() and unregister trace event() would be called, resulting in unregister trace event() being called twice and causing the wild-memory-access. The issue was fixed by avoiding the second call to unregister trace event() by checking if the first one was called. A general protection fault occurred, probably due to a non-canonical address.
Recommendations To resolve the issue, update the Linux kernel to a version later than 6.1.0-rc1-00186-g76f33a7eedb4. As a temporary workaround, consider disabling the register synth event() function until a patch is available. Restrict access to the vulnerable unregister trace event() function to minimize the risk of exploitation. Avoid using the set synth event print fmt() function in the affected register synth event() function until the issue is resolved.

Exploit

Fix

Out of bounds Read

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03917
CVE-2022-49799
SUSE-SU-2025:01918-1
SUSE-SU-2025:01966-1
SUSE-SU-2025:01982-1
SUSE-SU-2025:01995-1
SUSE-SU-2025:02173-1
SUSE-SU-2025:02262-1
SUSE-SU-2025:2173-1
SUSE-SU-2025_01982-1
SUSE-SU-2025_02173-1
SUSE-SU-2025_02262-1

Affected Products

Astra Linux
Linux Kernel
Suse