CVE-2022-49293
published 2025-02-26CVE-2022-49293: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: initialize registers in nft_do_chain() Initialize registers to avoid…
PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.29%
21.0th percentile
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: initialize registers in nft_do_chain()
Initialize registers to avoid stack leak into userspace.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.17.3-1 (bookworm) | linux 5.17.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < 4d28522acd1c4415c85f6b33463713a268f68965 | 4d28522acd1c4415c85f6b33463713a268f68965 |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < a3cc32863b175168283cb0a5fde08de6a1e27df9 | a3cc32863b175168283cb0a5fde08de6a1e27df9 |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < 88791b79a1eb2ba94e95d039243e28433583a67b | 88791b79a1eb2ba94e95d039243e28433583a67b |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < 06f0ff82c70241a766a811ae1acf07d6e2734dcb | 06f0ff82c70241a766a811ae1acf07d6e2734dcb |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < 2c74374c2e88c7b7992bf808d9f9391f7452f9d9 | 2c74374c2e88c7b7992bf808d9f9391f7452f9d9 |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < fafb904156fbb8f1dd34970cd5223e00b47c33be | fafb904156fbb8f1dd34970cd5223e00b47c33be |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < 64f24c76dd0ce53d0fa3a0bfb9aeea507c769485 | 64f24c76dd0ce53d0fa3a0bfb9aeea507c769485 |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < dd03640529204ef4b8189fbdea08217d8d98271f | dd03640529204ef4b8189fbdea08217d8d98271f |
| linux | linux | >= 96518518cc417bb0a8c80b9fb736202e28acdf96 < 4c905f6740a365464e91467aa50916555b28213d | 4c905f6740a365464e91467aa50916555b28213d |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.113-1 | 5.10.113-1 |
| linux | linux_kernel | >= 0 < 5.17.3-1 | 5.17.3-1 |
| linux | linux_kernel | >= 0 < 5.17.3-1 | 5.17.3-1 |
| linux | linux_kernel | >= 0 < 5.17.3-1 | 5.17.3-1 |
| linux | linux_kernel | >= 3.13 < 4.9.309 | 4.9.309 |
| linux | linux_kernel | >= 4.10 < 4.14.274 | 4.14.274 |
| linux | linux_kernel | >= 4.15 < 4.19.237 | 4.19.237 |
| linux | linux_kernel | >= 4.20 < 5.4.188 | 5.4.188 |
| linux | linux_kernel | >= 5.11 < 5.15.32 | 5.15.32 |
| linux | linux_kernel | >= 5.16 < 5.16.18 | 5.16.18 |
| linux | linux_kernel | >= 5.5 < 5.10.109 | 5.10.109 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jrq8-cmr8-f5vr: In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: initialize registers in nft_do_chain()
Initialize register
ghsa_unreviewed·2025-10-21
CVE-2022-49293 [MEDIUM] GHSA-jrq8-cmr8-f5vr: In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: initialize registers in nft_do_chain()
Initialize register
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: initialize registers in nft_do_chain()
Initialize registers to avoid stack leak into userspace.
OSV
CVE-2022-49293: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: initialize registers in nft_do_chain() Initialize registers
osv·2025-02-26·CVSS 5.5
CVE-2022-49293 [MEDIUM] CVE-2022-49293: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: initialize registers in nft_do_chain() Initialize registers
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: initialize registers in nft_do_chain() Initialize registers to avoid stack leak into userspace.
Red Hat
kernel: netfilter: nf_tables: initialize registers in nft_do_chain()
vendor_redhat·2025-02-26·CVSS 5.5
CVE-2022-49293 [MEDIUM] CWE-824 kernel: netfilter: nf_tables: initialize registers in nft_do_chain()
kernel: netfilter: nf_tables: initialize registers in nft_do_chain()
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: initialize registers in nft_do_chain()
Initialize registers to avoid stack leak into userspace.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 8) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2022-49293: linux - In the Linux kernel, the following vulnerability has been resolved: netfilter: ...
vendor_debian·2022·CVSS 5.5
CVE-2022-49293 [MEDIUM] CVE-2022-49293: linux - In the Linux kernel, the following vulnerability has been resolved: netfilter: ...
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: initialize registers in nft_do_chain() Initialize registers to avoid stack leak into userspace.
Scope: local
bookworm: resolved (fixed in 5.17.3-1)
bullseye: resolved (fixed in 5.10.113-1)
forky: resolved (fixed in 5.17.3-1)
sid: resolved (fixed in 5.17.3-1)
trixie: resolved (fixed in 5.17.3-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/06f0ff82c70241a766a811ae1acf07d6e2734dcbhttps://git.kernel.org/stable/c/2c74374c2e88c7b7992bf808d9f9391f7452f9d9https://git.kernel.org/stable/c/4c905f6740a365464e91467aa50916555b28213dhttps://git.kernel.org/stable/c/4d28522acd1c4415c85f6b33463713a268f68965https://git.kernel.org/stable/c/64f24c76dd0ce53d0fa3a0bfb9aeea507c769485https://git.kernel.org/stable/c/88791b79a1eb2ba94e95d039243e28433583a67bhttps://git.kernel.org/stable/c/a3cc32863b175168283cb0a5fde08de6a1e27df9https://git.kernel.org/stable/c/dd03640529204ef4b8189fbdea08217d8d98271fhttps://git.kernel.org/stable/c/fafb904156fbb8f1dd34970cd5223e00b47c33be
2025-02-26
Published