CVE-2022-49629

Source
https://cve.org/CVERecord?id=CVE-2022-49629
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49629.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49629
Downstream
Published
2025-02-26T02:23:42.768Z
Modified
2026-05-28T03:55:18.444612776Z
Severity
  • 4.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
nexthop: Fix data-races around nexthop_compat_mode.
Details

In the Linux kernel, the following vulnerability has been resolved:

nexthop: Fix data-races around nexthopcompatmode.

While reading nexthopcompatmode, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49629.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4f80116d3df3b23ee4b83ea8557629e1799bc230
Fixed
a51040d4b120f3520df64fb0b9c63b31d69bea9b
Fixed
0d17723afea3ae8c9f245c9bbd2ba5945b77e812
Fixed
ae3054f6fbccc90f14ecd6cf9b2c09a2401c64fd
Fixed
bdf00bf24bef9be1ca641a6390fd5487873e0d2e

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49629.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.8.0
Fixed
5.10.132
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.56
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.18.13

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49629.json"