PT-2025-8399 · Linux+5 · Linux Kernel+5

Laibin Qiu

·

Published

2022-01-01

·

Updated

2026-05-26

·

CVE-2022-49465

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free issue has been identified in the Linux kernel, specifically in the blk-throttle component. This issue occurs when a bio (block I/O request) is throttled and the BIO THROTTLED flag is set after the timer starts. If the bio has already been completed, it may cause a use-after-free error. The issue is related to the blk throtl bio() function and the bio structure. The estimated number of potentially affected devices is not provided.
Recommendations To resolve this issue, apply the fix that moves the BIO THROTTLED set into the queue lock. This change ensures that the BIO THROTTLED flag is set while holding the queue lock, preventing the use-after-free error. As a temporary workaround, consider disabling the blk throtl bio() function until a patch is available. However, this workaround may have performance implications and should be used with caution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Double Free

Use After Free

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
AZL-58998
BDU:2025-04341
CVE-2022-49465
OPENSUSE-SU-2025_1195-1
OPENSUSE-SU-2025_1263-1
RHSA-2022:8267
RHSA-2022_8267
SUSE-SU-2025:01600-1
SUSE-SU-2025:02391-1
SUSE-SU-2025:02392-1
SUSE-SU-2025:02394-1
SUSE-SU-2025:02396-1
SUSE-SU-2025:02398-1
SUSE-SU-2025:02399-1
SUSE-SU-2025:02400-1
SUSE-SU-2025:02401-1
SUSE-SU-2025:02402-1
SUSE-SU-2025:02415-1
SUSE-SU-2025:02416-1
SUSE-SU-2025:02418-1
SUSE-SU-2025:02419-1
SUSE-SU-2025:02422-1
SUSE-SU-2025:02428-1
SUSE-SU-2025:02434-1
SUSE-SU-2025:02436-1
SUSE-SU-2025:02444-1
SUSE-SU-2025:02445-1
SUSE-SU-2025:02446-1
SUSE-SU-2025:02451-1
SUSE-SU-2025:02454-1
SUSE-SU-2025:02455-1
SUSE-SU-2025:02468-1
SUSE-SU-2025:02507-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1194-1
SUSE-SU-2025:1195-1
SUSE-SU-2025:1241-1
SUSE-SU-2025:1263-1
SUSE-SU-2025:4123-1
SUSE-SU-2025_01600-1
SUSE-SU-2025_1195-1
SUSE-SU-2025_1241-1
SUSE-SU-2025_1263-1
USN-8096-1
USN-8096-2
USN-8096-3
USN-8096-4
USN-8096-5
USN-8116-1
USN-8141-1
USN-8163-1
USN-8163-2
USN-8243-1

Affected Products

Debian
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu