cbcvebase.
CVE-2022-49182
published 2025-02-26

CVE-2022-49182: In the Linux kernel, the following vulnerability has been resolved: net: hns3: add vlan list lock to protect vlan list When adding port base VLAN, vf VLAN need…

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.27%
19.0th percentile
In the Linux kernel, the following vulnerability has been resolved: net: hns3: add vlan list lock to protect vlan list When adding port base VLAN, vf VLAN need to remove from HW and modify the vlan state in vf VLAN list as false. If the periodicity task is freeing the same node, it may cause "use after free" error. This patch adds a vlan list lock to protect the vlan list.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.17.3-1 (bookworm)linux 5.17.3-1 (bookworm)
linuxlinux
linuxlinux>= c6075b193462d9a3930fb41f587f94720658752a < 30f0ff7176efe8ac6c55f85bce26ed58bb60875830f0ff7176efe8ac6c55f85bce26ed58bb608758
linuxlinux>= c6075b193462d9a3930fb41f587f94720658752a < 09e383ca97e798f9954189b741af54b5c51e7a9709e383ca97e798f9954189b741af54b5c51e7a97
linuxlinux>= c6075b193462d9a3930fb41f587f94720658752a < f58af41deeab0f45c9c80adf5f2de489ebbac3ddf58af41deeab0f45c9c80adf5f2de489ebbac3dd
linuxlinux>= c6075b193462d9a3930fb41f587f94720658752a < 1932a624ab88ff407d1a1d567fe581faa15dc7251932a624ab88ff407d1a1d567fe581faa15dc725
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 5.1 < 5.15.335.15.33
linuxlinux_kernel>= 5.16 < 5.16.195.16.19
linuxlinux_kernel>= 5.17 < 5.17.25.17.2

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.