PT-2025-25917 · Linux+2 · Linux Kernel+2

Published

2022-08-28

·

Updated

2025-06-19

·

CVE-2022-49991

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the Linux kernel, specifically in the hugetlb mcopy atomic pte function. In the MCOPY ATOMIC CONTINUE case with a non-shared VMA, pages in the page cache are installed in the ptes, but hugepage add new anon rmap is called mistakenly because they are not vm shared. This results in corrupting the page->mapping used by page cache code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02027
CVE-2022-49991
RHSA-2023:2458
RHSA-2023_2458
RHSA-2025:14744
RHSA-2025:14749

Affected Products

Astra Linux
Linux Kernel
Red Hat