PT-2025-8126 · Linux+1 · Linux Kernel+1

Yonglong Li

·

Published

2022-03-17

·

Updated

2025-03-03

·

CVE-2022-49198

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A crash issue has been identified in the Linux kernel related to the mptcp module. The problem occurs when the system is under memory pressure, causing sk wmem schedule to return false, leading to a crash when trying to release the dst object. This issue is triggered by the mptcp sendmsg frag function and can result in a kernel panic. The estimated number of potentially affected devices is not provided.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Improper Initialization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03289
CVE-2022-49198

Affected Products

Astra Linux
Linux Kernel