PT-2025-8642 · Linux+1 · Linux Kernel+1
Sami Tolvanen
·
Published
2022-06-13
·
Updated
2025-02-27
·
CVE-2022-49709
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A vulnerability in the Linux kernel has been identified, related to the usage of RCU NONIDLE during the
cfi slowpath diag function. This can result in an invalid RCU state in the cpuidle code path, leading to warnings and potential issues. The problem arises from the incorrect usage of RCU NONIDLE, which can cause the RCU state to become invalid when the cpuidle code path is executed. To address this, the solution involves calling rcu irq enter and rcu irq exit to wake up RCU only when necessary and disabling interrupts for the entire CFI shadow/module check.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel