CVE-2022-49575

Source
https://cve.org/CVERecord?id=CVE-2022-49575
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49575.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49575
Downstream
Published
2025-02-26T02:23:16.142Z
Modified
2026-04-11T12:44:14.222506Z
Severity
  • 4.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts.
Details

In the Linux kernel, the following vulnerability has been resolved:

tcp: Fix a data-race around sysctltcpthinlineartimeouts.

While reading sysctltcpthinlineartimeouts, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49575.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
36e31b0af58728071e8023cf8e20c5166b700717
Fixed
f4b0295be9a3c4260de4585fac4062e602a88ac7
Fixed
492f3713b282c0e67e951cd804edd22eccc25412
Fixed
cc133e4f4bc225079198192623945bb872c08143
Fixed
404c53ccdebd11f96954f4070cffac8e0b4d5cb6
Fixed
a0f96c4f179cb3560078cefccef105e8f1701210
Fixed
7c6f2a86ca590d5187a073d987e9599985fb1c7c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49575.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.34
Fixed
4.19.254
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.208
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.134
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.58
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.18.15

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49575.json"