PT-2025-8042 · Linux+4 · Linux Kernel+4

Jianglei Nie

·

Published

2022-03-08

·

Updated

2025-09-29

·

CVE-2022-49114

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use after free issue has been identified in the Linux kernel, specifically in the fc exch abts resp() function. The fc exch release(ep) call decreases the reference count of ep, and when this count reaches zero, ep is freed. However, ep is still used in subsequent code, leading to a use after free condition. This issue is resolved by returning after the fc exch release() call to prevent the use after free.
Recommendations To resolve this issue, update the Linux kernel to a version that includes the fix for the use after free in fc exch abts resp(). At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2026-01491
CESA-2023_2951
CVE-2022-49114
OESA-2025-1282
OPENSUSE-SU-2025_1263-1
RHSA-2023:2458
RHSA-2023:2951
RHSA-2023_2458
RHSA-2023_2951
RHSA-2025:10005
RHSA-2025:10009
RHSA-2025:10174
RHSA-2025:10179
RHSA-2025:10193
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1194-1
SUSE-SU-2025:1241-1
SUSE-SU-2025:1263-1
SUSE-SU-2025:1293-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1241-1
SUSE-SU-2025_1263-1
SUSE-SU-2025_1293-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Suse