CVE-2022-49625

Source
https://cve.org/CVERecord?id=CVE-2022-49625
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49625.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49625
Downstream
Related
Published
2025-02-26T02:23:40.786Z
Modified
2026-03-20T12:24:41.989407Z
Summary
sfc: fix kernel panic when creating VF
Details

In the Linux kernel, the following vulnerability has been resolved:

sfc: fix kernel panic when creating VF

When creating VFs a kernel panic can happen when calling to efxef10tryupdatenicstatsvf.

When releasing a DMA coherent buffer, sometimes, I don't know in what specific circumstances, it has to unmap memory with vunmap. It is disallowed to do that in IRQ context or with BH disabled. Otherwise, we hit this line in vunmap, causing the crash: BUGON(ininterrupt());

This patch reenables BH to release the buffer.

Log messages when the bug is hit: kernel BUG at mm/vmalloc.c:2727! invalid opcode: 0000 [#1] PREEMPT SMP NOPTI CPU: 6 PID: 1462 Comm: NetworkManager Kdump: loaded Tainted: G I --------- --- 5.14.0-119.el9.x86_64 #1 Hardware name: Dell Inc. PowerEdge R740/06WXJT, BIOS 2.8.2 08/27/2020 RIP: 0010:vunmap+0x2e/0x30 ...skip... Call Trace: __iommudmafree+0x96/0x100 efxnicfreebuffer+0x2b/0x40 [sfc] efxef10tryupdatenicstatsvf+0x14a/0x1c0 [sfc] efxef10updatestatsvf+0x18/0x40 [sfc] efxstartall+0x15e/0x1d0 [sfc] efxnet_open+0x5a/0xe0 [sfc] __dev_open+0xe7/0x1a0 __devchangeflags+0x1d7/0x240 devchangeflags+0x21/0x60 ...skip...

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49625.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d778819609a27efd5358da8151a0ad3507243e19
Fixed
d9840212a9c00507347c703f4fdeda16400407e0
Fixed
b9072305270579a9d6afc9b926166231e5b1a7c8
Fixed
82bcb730f856086f033e6c04082eb4503d4c2fa4
Fixed
da346adcf5573fd8663cabfdfe8371009629a906
Fixed
b82e4ad58a7fb72456503958a93060f87896e629
Fixed
68e5f32f0de9594629ff9e599294d9801c6187de
Fixed
16662524ec5da801fb78a1afcaf6e782f1cf103a
Fixed
ada74c5539eba06cf8b47d068f92e0b3963a9a6e

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49625.json"