CVE-2022-49574

Source
https://cve.org/CVERecord?id=CVE-2022-49574
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49574.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49574
Downstream
Published
2025-02-26T02:23:15.644Z
Modified
2026-05-28T03:54:39.991030613Z
Severity
  • 4.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
tcp: Fix data-races around sysctl_tcp_recovery.
Details

In the Linux kernel, the following vulnerability has been resolved:

tcp: Fix data-races around sysctltcprecovery.

While reading sysctltcprecovery, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49574.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4f41b1c58a32537542f14c1150099131613a5e8a
Fixed
c7a492db1f7c37c758a66915908677bd8bc5d368
Fixed
92c35113c63306091df9211375eebd0abd8c2160
Fixed
d8781f7cd04091744f474a2bada74772084b9dc9
Fixed
a31e2d0cb5cfa2aae3144cac04f25031d5d20fb4
Fixed
52ee7f5c4811ce6be1becd14d38ba1f8a8a0df81
Fixed
e7d2ef837e14a971a05f60ea08c47f3fed1a36e4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49574.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.4.0
Fixed
4.19.254
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.208
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.134
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.58
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.18.15

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49574.json"