CVE-2022-49413
Published: Feb 26, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: bfq: Update cgroup information before merging bio When the process is migrated to a different cgroup (or in case of writeback just starts submitting bios associated with a different cgroup) bfq_merge_bio() can operate with stale cgroup information in bic. Thus the bio can be merged to a request from a different cgroup or it can result in merging of bfqqs for different cgroups or bfqqs of already dead cgroups and causing possible use-after-free issues. Fix the problem by updating cgroup information in bfq_merge_bio().
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected e21b7a0b988772e82e7147e1c659a5afe2ae003c - < da9f3025d595956410ceaab2bea01980d7775948affected e21b7a0b988772e82e7147e1c659a5afe2ae003c - < b06691af08b41dfd81052a3362514d9827b44bb1affected e21b7a0b988772e82e7147e1c659a5afe2ae003c - < e8821f45612f2e6d9adb9c6ba0fb4184f57692aaaffected e21b7a0b988772e82e7147e1c659a5afe2ae003c - < d9165200c5627a2cf4408eefabdf0058bdf95e1aaffected e21b7a0b988772e82e7147e1c659a5afe2ae003c - < 2a1077f17169a6059992a0bbdb330e0abad1e6d9+1 more versions |
Linux | Linux | affected 4.12unaffected 0 - < 4.12unaffected 5.4.198 - <= 5.4.*unaffected 5.10.121 - <= 5.10.*unaffected 5.15.46 - <= 5.15.*+3 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now