PT-2025-8275 · Linux+2 · Linux Kernel+2

Syzbot

·

Published

2022-06-07

·

Updated

2025-04-14

·

CVE-2022-49341

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to the version containing the fix for the issue described
Description A vulnerability has been identified in the Linux kernel related to the bpf arm64 component. The issue arises when the bpf prog get info by fd() function attempts to copy the JIT image to user space, relying on prog->jited len to determine the size of the copy. It is theorized that this vulnerability could be triggered if prog->jited len is set to a specific value, such as 43, while prog->bpf func is cleared. This could potentially lead to a kernel memory exposure attempt, as detected by the usercopy mechanism. The vulnerability was discovered through an illegal copy to user() attempt reported by syzbot.
Recommendations As a temporary workaround, consider disabling the bpf prog get info by fd() function until a patch is available. Restrict access to the bpf arm64 component to minimize the risk of exploitation. Avoid using the copy to user() function in the affected API endpoint until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03674
CVE-2022-49341
OESA-2025-1282
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1241-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1241-1

Affected Products

Astra Linux
Linux Kernel
Suse