CVE-2022-49638

Source
https://cve.org/CVERecord?id=CVE-2022-49638
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49638.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49638
Downstream
Related
Published
2025-02-26T02:23:47.200Z
Modified
2026-03-20T12:24:42.808928Z
Severity
  • 4.7 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
icmp: Fix data-races around sysctl.
Details

In the Linux kernel, the following vulnerability has been resolved:

icmp: Fix data-races around sysctl.

While reading icmp sysctl variables, they can be changed concurrently. So, we need to add READ_ONCE() to avoid data-races.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49638.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4cdf507d54525842dfd9f6313fdafba039084046
Fixed
1740e5922fbb705637ae9fa5203db132fc45f9f6
Fixed
53ecd09ef2fb35fa69667ae8e414ef6b00fd3bf6
Fixed
edeec63b13c252193d626c2a48d7a2f0e7016dc2
Fixed
0cba7ca667ceb06934746ddd9833a25847bde81d
Fixed
e088ceb73c24ab4774da391d54a6426f4bfaefce
Fixed
e2828e8c605853f71267825c9415437c0a93e4f2
Fixed
798c2cf57c63ab39c8aac24d6a3d50f4fa5eeb06
Fixed
48d7ee321ea5182c6a70782aa186422a70e67e22

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49638.json"