PT-2025-8359 · Linux+1 · Linux Kernel+1

Jakob Koschel

·

Published

2022-04-25

·

Updated

2025-04-03

·

CVE-2022-49425

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A issue in the Linux kernel has been identified where a stale list iterator could be dereferenced after a loop, potentially leading to out-of-bounds or undefined values being loaded. This could result in unsafe comparisons, making it difficult to determine if a specific element was found. The problem arises when 'cur->page' is dereferenced and its value is used for comparison, as it may match the value of 'page' by chance or intention, even if the correct element was not found.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2026-03679
CVE-2022-49425
OESA-2025-1370

Affected Products

Astra Linux
Linux Kernel