PT-2025-7994 · Linux+5 · Linux Kernel+5

Guillaume Nault

·

Published

2022-04-06

·

Updated

2025-09-29

·

CVE-2022-49066

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved. The issue occurs when a decapsulated packet is fed to a veth device with act mirred, and skb headlen() may be 0. However, veth xmit() calls dev forward skb(), which expects at least ETH HLEN byte of linear data. To fix this, pskb may pull() is used to ensure veth xmit() respects this constraint. The vulnerability can cause a kernel bug, leading to a crash.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2025-06015
CESA-2022_7683
CVE-2022-49066
RHSA-2022:7683
RHSA-2022:8267
RHSA-2022_7683
RHSA-2022_8267
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1241-1
SUSE-SU-2025:1293-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1241-1
SUSE-SU-2025_1293-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Red Os
Suse