๐Ÿ” CVE Alert

CVE-2022-49634

MEDIUM 4.7

sysctl: Fix data-races in proc_dou8vec_minmax().

CVSS Score
4.7
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: sysctl: Fix data-races in proc_dou8vec_minmax(). A sysctl variable is accessed concurrently, and there is always a chance of data-race. So, all readers and writers need some basic protection to avoid load/store-tearing. This patch changes proc_dou8vec_minmax() to use READ_ONCE() and WRITE_ONCE() internally to fix data-races on the sysctl side. For now, proc_dou8vec_minmax() itself is tolerant to a data-race, but we still need to add annotations on the other subsystem's side.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Feb 26, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new medium vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
389dab6142d742f91010f38de0f1f2f440b97e1b < f177b382c33900d0e5a9766493c11a1074076f78 cb9444130662c6c13022579c861098f212db2562 < e58b02e445463065b4078bf621561da75197853f cb9444130662c6c13022579c861098f212db2562 < 5f776daef0b5354615ec4b4234cd9539ca05f273 cb9444130662c6c13022579c861098f212db2562 < 7dee5d7747a69aa2be41f04c6a7ecfe3ac8cdf18
Linux / Linux
5.13

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/f177b382c33900d0e5a9766493c11a1074076f78 git.kernel.org: https://git.kernel.org/stable/c/e58b02e445463065b4078bf621561da75197853f git.kernel.org: https://git.kernel.org/stable/c/5f776daef0b5354615ec4b4234cd9539ca05f273 git.kernel.org: https://git.kernel.org/stable/c/7dee5d7747a69aa2be41f04c6a7ecfe3ac8cdf18