cbcvebase.
CVE-2022-48799
published 2024-07-16

CVE-2022-48799: In the Linux kernel, the following vulnerability has been resolved: perf: Fix list corruption in perf_cgroup_switch() There's list corruption on…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.1th percentile
In the Linux kernel, the following vulnerability has been resolved: perf: Fix list corruption in perf_cgroup_switch() There's list corruption on cgrp_cpuctx_list. This happens on the following path: perf_cgroup_switch: list_for_each_entry(cgrp_cpuctx_list) cpu_ctx_sched_in ctx_sched_in ctx_pinned_sched_in merge_sched_in perf_cgroup_event_disable: remove the event from the list Use list_for_each_entry_safe() to allow removing an entry during iteration.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.16.10-1 (bookworm)linux 5.16.10-1 (bookworm)
linuxlinux
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < 5d76ed4223403f90421782adb2f20a9ecbc931865d76ed4223403f90421782adb2f20a9ecbc93186
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < 30d9f3cbe47e1018ddc8069ac5b5c9e66fbdf72730d9f3cbe47e1018ddc8069ac5b5c9e66fbdf727
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < a2ed7b29d0673ba361546e2d87dbbed149456c45a2ed7b29d0673ba361546e2d87dbbed149456c45
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < f6b5d51976fcefef5732da3e3feb3ccff680f7c8f6b5d51976fcefef5732da3e3feb3ccff680f7c8
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < 7969fe91c9830e045901970e9d755b7505881d4a7969fe91c9830e045901970e9d755b7505881d4a
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < 2142bc1469a316fddd10012d76428f7265258f812142bc1469a316fddd10012d76428f7265258f81
linuxlinux>= 058fe1c0440e68a1ba3c2270ae43e9f0298b27d8 < 5f4e5ce638e6a490b976ade4a40017b40abb2da05f4e5ce638e6a490b976ade4a40017b40abb2da0
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.103-15.10.103-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 4.11 < 4.14.2674.14.267
linuxlinux_kernel>= 4.15 < 4.19.2304.19.230
linuxlinux_kernel>= 4.20 < 5.4.1805.4.180
linuxlinux_kernel>= 5.11 < 5.15.245.15.24
linuxlinux_kernel>= 5.16 < 5.16.105.16.10
linuxlinux_kernel>= 5.5 < 5.10.1015.10.101

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.