cbcvebase.
CVE-2022-49461
published 2025-02-26

CVE-2022-49461: In the Linux kernel, the following vulnerability has been resolved: amt: fix memory leak for advertisement message When a gateway receives an advertisement…

PriorityP415medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.9th percentile
In the Linux kernel, the following vulnerability has been resolved: amt: fix memory leak for advertisement message When a gateway receives an advertisement message, it extracts relay information and then it should be freed. But the advertisement handler doesn't free it. So, memory leak would occur.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.5-1 (bookworm)linux 5.18.5-1 (bookworm)
linuxlinux
linuxlinux>= cbc21dc1cfe949e37b2a54c71511579f1899e8d4 < 19bb2d57eac86a368839a92117d8a10ab718362319bb2d57eac86a368839a92117d8a10ab7183623
linuxlinux>= cbc21dc1cfe949e37b2a54c71511579f1899e8d4 < e7322da399fb86a2072f008b56f7160afa1b2051e7322da399fb86a2072f008b56f7160afa1b2051
linuxlinux>= cbc21dc1cfe949e37b2a54c71511579f1899e8d4 < fe29794c3585d039fefebaa2b5a4932a627ad4fdfe29794c3585d039fefebaa2b5a4932a627ad4fd
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 5.16 < 5.17.145.17.14
linuxlinux_kernel>= 5.18 < 5.18.35.18.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.