CVE-2022-49594

Source
https://cve.org/CVERecord?id=CVE-2022-49594
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49594.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49594
Downstream
Published
2025-02-26T02:23:25.531Z
Modified
2026-04-11T12:44:18.942957Z
Severity
  • 4.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
tcp: Fix a data-race around sysctl_tcp_mtu_probe_floor.
Details

In the Linux kernel, the following vulnerability has been resolved:

tcp: Fix a data-race around sysctltcpmtuprobefloor.

While reading sysctltcpmtuprobefloor, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49594.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c04b79b6cfd714144f6a2cf359603d82ee631e62
Fixed
033963b220633ed1602d458e7e4ac06afa9fefb2
Fixed
d5bece4df6090395f891110ef52a6f82d16685db
Fixed
cc36c37f5fe066c4708e623ead96dc8f57224bf5
Fixed
e2ecbf3f0aa88277d43908c53b99399d55729ff9
Fixed
8e92d4423615a5257d0d871fc067aa561f597deb

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49594.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.4.0
Fixed
5.4.208
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.134
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.58
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.18.15

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49594.json"