PT-2025-8596 · Linux+4 · Linux Kernel+4

Syzbot

·

Published

2022-11-15

·

Updated

2025-04-14

·

CVE-2022-49663

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.19.0-rc2-syzkaller-00443-g8720bd951b8e
Description A bug has been identified in the Linux kernel, specifically in the skb tunnel check pmtu() function. The issue arises from an incorrect assumption about the mac header being set in ndo start xmit() paths. This bug was caught by recently added debug code and is associated with a warning in the skb mac header len function. The vulnerability is related to the geneve xmit skb function in drivers/net/geneve.c and the packet direct xmit function in net/packet/af packet.c.
Recommendations For Linux kernel versions prior to 5.19.0-rc2-syzkaller-00443-g8720bd951b8e, consider updating to a newer version that includes the fix for this issue. As a temporary workaround, consider restricting access to the vulnerable geneve xmit skb function in drivers/net/geneve.c until a patch is available. Additionally, avoid using the packet direct xmit function in net/packet/af packet.c until the issue is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CESA-2023_2951
CVE-2022-49663
RHSA-2022:8267
RHSA-2022_8267
RHSA-2023:2951
RHSA-2023_2951
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1241-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1241-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Suse