Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog
Консоль
Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog

exploitDog

nvd Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

CVE-2022-49589

ΠžΠΏΡƒΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ: 26 Ρ„Π΅Π². 2025
Π˜ΡΡ‚ΠΎΡ‡Π½ΠΈΠΊ: nvd
CVSS3: 4.7
EPSS Низкий

ОписаниС

In the Linux kernel, the following vulnerability has been resolved:

igmp: Fix data-races around sysctl_igmp_qrv.

While reading sysctl_igmp_qrv, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers.

This test can be packed into a helper, so such changes will be in the follow-up series after net is merged into net-next.

qrv ?: READ_ONCE(net->ipv4.sysctl_igmp_qrv);

УязвимыС ΠΊΠΎΠ½Ρ„ΠΈΠ³ΡƒΡ€Π°Ρ†ΠΈΠΈ

ΠšΠΎΠ½Ρ„ΠΈΠ³ΡƒΡ€Π°Ρ†ΠΈΡ 1

Одно из

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
ВСрсия ΠΎΡ‚ 3.18 (Π²ΠΊΠ»ΡŽΡ‡Π°Ρ) Π΄ΠΎ 4.19.255 (ΠΈΡΠΊΠ»ΡŽΡ‡Π°Ρ)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
ВСрсия ΠΎΡ‚ 4.20 (Π²ΠΊΠ»ΡŽΡ‡Π°Ρ) Π΄ΠΎ 5.4.209 (ΠΈΡΠΊΠ»ΡŽΡ‡Π°Ρ)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
ВСрсия ΠΎΡ‚ 5.5 (Π²ΠΊΠ»ΡŽΡ‡Π°Ρ) Π΄ΠΎ 5.10.135 (ΠΈΡΠΊΠ»ΡŽΡ‡Π°Ρ)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
ВСрсия ΠΎΡ‚ 5.11 (Π²ΠΊΠ»ΡŽΡ‡Π°Ρ) Π΄ΠΎ 5.15.59 (ΠΈΡΠΊΠ»ΡŽΡ‡Π°Ρ)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
ВСрсия ΠΎΡ‚ 5.16 (Π²ΠΊΠ»ΡŽΡ‡Π°Ρ) Π΄ΠΎ 5.18.15 (ΠΈΡΠΊΠ»ΡŽΡ‡Π°Ρ)
cpe:2.3:o:linux:linux_kernel:5.19:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.19:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.19:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.19:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.19:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.19:rc6:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.19:rc7:*:*:*:*:*:*

EPSS

ΠŸΡ€ΠΎΡ†Π΅Π½Ρ‚ΠΈΠ»ΡŒ: 7%
0.00027
Низкий

4.7 Medium

CVSS3

Π”Π΅Ρ„Π΅ΠΊΡ‚Ρ‹

CWE-362
CWE-362

БвязанныС уязвимости

CVSS3: 4.7
ubuntu
12 мСсяцСв Π½Π°Π·Π°Π΄

In the Linux kernel, the following vulnerability has been resolved: igmp: Fix data-races around sysctl_igmp_qrv. While reading sysctl_igmp_qrv, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. This test can be packed into a helper, so such changes will be in the follow-up series after net is merged into net-next. qrv ?: READ_ONCE(net->ipv4.sysctl_igmp_qrv);

CVSS3: 4.7
redhat
12 мСсяцСв Π½Π°Π·Π°Π΄

In the Linux kernel, the following vulnerability has been resolved: igmp: Fix data-races around sysctl_igmp_qrv. While reading sysctl_igmp_qrv, it can be changed concurrently. Thus, we need to add READ_ONCE() to its readers. This test can be packed into a helper, so such changes will be in the follow-up series after net is merged into net-next. qrv ?: READ_ONCE(net->ipv4.sysctl_igmp_qrv);

CVSS3: 4.7
debian
12 мСсяцСв Π½Π°Π·Π°Π΄

In the Linux kernel, the following vulnerability has been resolved: i ...

suse-cvrf
10 мСсяцСв Π½Π°Π·Π°Π΄

Security update for the Linux Kernel

EPSS

ΠŸΡ€ΠΎΡ†Π΅Π½Ρ‚ΠΈΠ»ΡŒ: 7%
0.00027
Низкий

4.7 Medium

CVSS3

Π”Π΅Ρ„Π΅ΠΊΡ‚Ρ‹

CWE-362
CWE-362
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡ‚ΡŒ CVE-2022-49589