CVE-2022-49541
published 2025-02-26CVE-2022-49541: In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential double free during failed mount RHBZ…
PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.30%
22.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
cifs: fix potential double free during failed mount
RHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=2088799
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.18.5-1 (bookworm) | linux 5.18.5-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= d17abdf7566566fc402c31899b353044a7ff3cf4 < ce0008a0e410cdd95f0d8cd81b2902ec10a660c4 | ce0008a0e410cdd95f0d8cd81b2902ec10a660c4 |
| linux | linux | >= d17abdf7566566fc402c31899b353044a7ff3cf4 < 9a167fc440e5693c1cdd7f07071e05658bd9d89d | 9a167fc440e5693c1cdd7f07071e05658bd9d89d |
| linux | linux | >= d17abdf7566566fc402c31899b353044a7ff3cf4 < ee71f8f1cd3c8c4a251fd3e8abc89215ae3457cb | ee71f8f1cd3c8c4a251fd3e8abc89215ae3457cb |
| linux | linux | >= d17abdf7566566fc402c31899b353044a7ff3cf4 < 8378a51e3f8140f60901fb27208cc7a6e47047b5 | 8378a51e3f8140f60901fb27208cc7a6e47047b5 |
| linux | linux_kernel | < 5.15.46 | 5.15.46 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 5.16 < 5.17.14 | 5.17.14 |
| linux | linux_kernel | >= 5.18 < 5.18.3 | 5.18.3 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-g5vv-jqc9-w8hm: In the Linux kernel, the following vulnerability has been resolved:
cifs: fix potential double free during failed mount
RHBZ: https://bugzilla
ghsa_unreviewed·2025-03-11
CVE-2022-49541 [HIGH] CWE-415 GHSA-g5vv-jqc9-w8hm: In the Linux kernel, the following vulnerability has been resolved:
cifs: fix potential double free during failed mount
RHBZ: https://bugzilla
In the Linux kernel, the following vulnerability has been resolved:
cifs: fix potential double free during failed mount
RHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=2088799
OSV
CVE-2022-49541: In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential double free during failed mount RHBZ: https://bugzilla
osv·2025-02-26·CVSS 7.8
CVE-2022-49541 [HIGH] CVE-2022-49541: In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential double free during failed mount RHBZ: https://bugzilla
In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential double free during failed mount RHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=2088799
Red Hat
kernel: cifs: fix potential double free during failed mount
vendor_redhat·2025-02-26·CVSS 7.8
CVE-2022-49541 [HIGH] CWE-415 kernel: cifs: fix potential double free during failed mount
kernel: cifs: fix potential double free during failed mount
In the Linux kernel, the following vulnerability has been resolved:
cifs: fix potential double free during failed mount
RHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=2088799
A flaw was found in the Linux kernel's CIFS code in which a failed mount might lead to a double-free. An attacker with permissions to attempt to mount CIFS volumes could exploit this vulnerability to alter kernel memory, leading to a denial of service, altered system memory, or an escalation of privileges.
Statement: This flaw results from a missing check in the kernel's CIFS mounting code which can lead to the same pointer being freed twice when there is an error mounting the volume. An attacker could exploit this vulnerability to corrupt or alter syst
Debian
CVE-2022-49541: linux - In the Linux kernel, the following vulnerability has been resolved: cifs: fix p...
vendor_debian·2022·CVSS 7.8
CVE-2022-49541 [HIGH] CVE-2022-49541: linux - In the Linux kernel, the following vulnerability has been resolved: cifs: fix p...
In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential double free during failed mount RHBZ: https://bugzilla.redhat.com/show_bug.cgi?id=2088799
Scope: local
bookworm: resolved (fixed in 5.18.5-1)
bullseye: resolved
forky: resolved (fixed in 5.18.5-1)
sid: resolved (fixed in 5.18.5-1)
trixie: resolved (fixed in 5.18.5-1)
No detection rules found.
No public exploits indexed.
2025-02-26
Published