cbcvebase.
CVE-2022-49632
published 2025-02-26

CVE-2022-49632: In the Linux kernel, the following vulnerability has been resolved: icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. While reading…

PriorityP414medium4.7CVSS 3.1
AVLACHPRLUINSUCNINAH
EPSS
0.17%
7.1th percentile
In the Linux kernel, the following vulnerability has been resolved: icmp: Fix a data-race around sysctl_icmp_errors_use_inbound_ifaddr. While reading sysctl_icmp_errors_use_inbound_ifaddr, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader.

Affected

11 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.14-1 (bookworm)linux 5.18.14-1 (bookworm)
linuxlinux
linuxlinux>= 1c2fb7f93cb20621772bf304f3dba0849942e5db < de9490c32bc10020efdd1509689a28f197d6dfb8de9490c32bc10020efdd1509689a28f197d6dfb8
linuxlinux>= 1c2fb7f93cb20621772bf304f3dba0849942e5db < f9617844e4d5d6331dbce3fb19a24e5bda201e58f9617844e4d5d6331dbce3fb19a24e5bda201e58
linuxlinux>= 1c2fb7f93cb20621772bf304f3dba0849942e5db < d2efabce81db7eed1c98fa1a3f203f0edd738ac3d2efabce81db7eed1c98fa1a3f203f0edd738ac3
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.18.14-15.18.14-1
linuxlinux_kernel>= 0 < 5.18.14-15.18.14-1
linuxlinux_kernel>= 0 < 5.18.14-15.18.14-1
linuxlinux_kernel>= 2.6.12 < 5.15.565.15.56
linuxlinux_kernel>= 5.16 < 5.18.135.18.13

CVSS provenance

nvdv3.14.7MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
osv4.7MEDIUM
vendor_debian4.7MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.