๐Ÿ” CVE Alert

CVE-2022-49548

HIGH 7.8

bpf: Fix potential array overflow in bpf_trampoline_get_progs()

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential array overflow in bpf_trampoline_get_progs() The cnt value in the 'cnt >= BPF_MAX_TRAMP_PROGS' check does not include BPF_TRAMP_MODIFY_RETURN bpf programs, so the number of the attached BPF_TRAMP_MODIFY_RETURN bpf programs in a trampoline can exceed BPF_MAX_TRAMP_PROGS. When this happens, the assignment '*progs++ = aux->prog' in bpf_trampoline_get_progs() will cause progs array overflow as the progs field in the bpf_tramp_progs struct can only hold at most BPF_MAX_TRAMP_PROGS bpf programs.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Feb 26, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
88fd9e5352fe05f7fe57778293aebd4cd106960b < 7f845de2863334bed4f362e95853f5e7bc323737 88fd9e5352fe05f7fe57778293aebd4cd106960b < e36452d5da6325df7c10cffc60a9e68d21e2606d 88fd9e5352fe05f7fe57778293aebd4cd106960b < 32c4559c61652f24c9fdd5440342196fe37453bc 88fd9e5352fe05f7fe57778293aebd4cd106960b < 4f8897bcc20b9ae44758e0572538d741ab66f0dc 88fd9e5352fe05f7fe57778293aebd4cd106960b < a2aa95b71c9bbec793b5c5fa50f0a80d882b3e8d
Linux / Linux
5.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/7f845de2863334bed4f362e95853f5e7bc323737 git.kernel.org: https://git.kernel.org/stable/c/e36452d5da6325df7c10cffc60a9e68d21e2606d git.kernel.org: https://git.kernel.org/stable/c/32c4559c61652f24c9fdd5440342196fe37453bc git.kernel.org: https://git.kernel.org/stable/c/4f8897bcc20b9ae44758e0572538d741ab66f0dc git.kernel.org: https://git.kernel.org/stable/c/a2aa95b71c9bbec793b5c5fa50f0a80d882b3e8d