CVE-2022-49377
Last modified
CVE-2022-49377 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: blk-mq: don't touch ->tagset in blk_mq_get_sq_hctx blk_mq_run_hw_queues() could be run when there isn't queued request and after queue is cleaned up, at that time tagset is freed, because tagset lifetime is covered by driver, and often freed after blk_cleanup_queue() returns. So don't touch ->tagset for figuring out current default hctx by the mapping built in request queue, so use-after-free on tagset can be avoided. Meantime this way should be fast than retrieving mapping from tagset.. EPSS estimates a 0.27% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: blk-mq: don't touch ->tagset in blk_mq_get_sq_hctx blk_mq_run_hw_queues() could be run when there isn't queued request and after queue is cleaned up, at that time tagset is freed, because tagset lifetime is covered by driver, and often freed after blk_cleanup_queue() returns. So don't touch ->tagset for figuring out current default hctx by the mapping built in request queue, so use-after-free on tagset can be avoided. Meantime this way should be fast than retrieving mapping from tagset.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.12, < 5.15.47 |
| Linux | Linux Kernel | >= 5.16, < 5.17.15 |
| Linux | Linux Kernel | >= 5.18, < 5.18.4 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2022-49377?
How severe is CVE-2022-49377?
How do I fix CVE-2022-49377?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-49371In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49372In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49373In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49374In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49375In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49376In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49378In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49379In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-4938The WCFM Frontend Manager plugin for WordPress is vulnerable…8.8
- CVE-2022-49380In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49381In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2022-49382In the Linux kernel, the following vulnerability has been re…5.5
Are you affected by CVE-2022-49377?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
