cbcvebase.
CVE-2022-49987
published 2025-06-18

CVE-2022-49987: In the Linux kernel, the following vulnerability has been resolved: md: call __md_stop_writes in md_stop From the link [1], we can see raid1d was running even…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.3th percentile
In the Linux kernel, the following vulnerability has been resolved: md: call __md_stop_writes in md_stop From the link [1], we can see raid1d was running even after the path raid_dtr -> md_stop -> __md_stop. Let's stop write first in destructor to align with normal md-raid to fix the KASAN issue. [1]. https://lore.kernel.org/linux-raid/CAPhsuW5gc4AakdGNdF8ubpezAuDLFOYUO_sfMZcec6hQFm8nhg@mail.gmail.com/T/#m7f12bf90481c02c6d2da68c64aeed4779b7df74a

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.2-1 (bookworm)linux 6.0.2-1 (bookworm)
linuxlinux
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < 1678ca35b80a94d474fdc31e2497ce5d7ed525121678ca35b80a94d474fdc31e2497ce5d7ed52512
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < 690b5c90fd2d81fd1d2b6110fa36783232f6dce2690b5c90fd2d81fd1d2b6110fa36783232f6dce2
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < 8e7fb19f1a744fd34e982633ced756fee0498ef78e7fb19f1a744fd34e982633ced756fee0498ef7
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < a5a58fab556bfe618b4c9719eb85712d78c6cb10a5a58fab556bfe618b4c9719eb85712d78c6cb10
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < 661c01b2181d9413c799127f13143583b69f20fd661c01b2181d9413c799127f13143583b69f20fd
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < f42a9819ba84bed2e609a4dff56af37063dcabdcf42a9819ba84bed2e609a4dff56af37063dcabdc
linuxlinux>= 48df498daf62e1292868005675331929305067f0 < 0dd84b319352bb8ba64752d4e45396d8b13e60180dd84b319352bb8ba64752d4e45396d8b13e6018
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.140-15.10.140-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 4.12 < 4.14.2924.14.292
linuxlinux_kernel>= 4.15 < 4.19.2574.19.257
linuxlinux_kernel>= 4.20 < 5.4.2125.4.212
linuxlinux_kernel>= 5.11 < 5.15.645.15.64
linuxlinux_kernel>= 5.16 < 5.19.65.19.6
linuxlinux_kernel>= 5.5 < 5.10.1405.10.140

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.