PT-2025-25918 · Linux+1 · Linux Kernel+1

CVE-2022-49992

·

Published

2022-08-28

·

Updated

2025-06-19

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.0.0
Description A bug in the Linux kernel has been resolved, which was reported by Yu Zhao after a commit added a check in swp offset pfn() for swap type. The issue triggers because pfn swap entry to page() could be called upon a genuine swap entry. The fix involves only calling pfn swap entry to page() when it's a write migration entry where the page is used.
Recommendations For Linux kernel versions prior to 6.0.0, update to version 6.0.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the pfn swap entry to page() function until a patch is available. Avoid using the swp offset pfn() function in sensitive operations until the issue is resolved.

Exploit

Fix

Type Confusion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-04488
CVE-2022-49992
RHSA-2023:2458

Affected Products

Astra Linux
Linux Kernel