In the Linux kernel, the following vulnerability has been resolved:
ipv4: Fix a data-race around sysctlfibmultipathuseneigh.
While reading sysctlfibmultipathuseneigh, it can be changed concurrently. Thus, we need to add READ_ONCE() to its reader.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49580.json",
"cna_assigner": "Linux"
}[
{
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c"
},
"id": "CVE-2022-49580-4c74fc5a",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@87507bcb4f5de16bb419e9509d874f4db6c0ad0f",
"digest": {
"line_hashes": [
"51505947204966767928268804219723944194",
"214214421529247474190175673750243837624",
"301055795422977177402215138914201739528",
"266747147499409258860726759563350219468"
],
"threshold": 0.9
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c"
},
"id": "CVE-2022-49580-5503dfdf",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6727f39e99e0f545d815edebb6c94228485427ec",
"digest": {
"line_hashes": [
"51505947204966767928268804219723944194",
"214214421529247474190175673750243837624",
"301055795422977177402215138914201739528",
"266747147499409258860726759563350219468"
],
"threshold": 0.9
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c"
},
"id": "CVE-2022-49580-5a290ca3",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@14e996577ed2799a1ed6ffeb71c76d63acb28444",
"digest": {
"line_hashes": [
"51505947204966767928268804219723944194",
"214214421529247474190175673750243837624",
"301055795422977177402215138914201739528",
"266747147499409258860726759563350219468"
],
"threshold": 0.9
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c",
"function": "fib_select_multipath"
},
"id": "CVE-2022-49580-6716ead3",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e045d672ba06e1d35bacb56374d350de0ac99066",
"digest": {
"function_hash": "76213728495587966225134535026283533242",
"length": 609.0
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c",
"function": "fib_select_multipath"
},
"id": "CVE-2022-49580-67db6df4",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6727f39e99e0f545d815edebb6c94228485427ec",
"digest": {
"function_hash": "76213728495587966225134535026283533242",
"length": 609.0
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c",
"function": "fib_select_multipath"
},
"id": "CVE-2022-49580-8749d881",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@87507bcb4f5de16bb419e9509d874f4db6c0ad0f",
"digest": {
"function_hash": "76213728495587966225134535026283533242",
"length": 609.0
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c",
"function": "fib_select_multipath"
},
"id": "CVE-2022-49580-a2c34c1d",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@14e996577ed2799a1ed6ffeb71c76d63acb28444",
"digest": {
"function_hash": "76213728495587966225134535026283533242",
"length": 609.0
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c"
},
"id": "CVE-2022-49580-b532b070",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b8d345db03b4deffb4f04219a51d3b1e94171b76",
"digest": {
"line_hashes": [
"51505947204966767928268804219723944194",
"214214421529247474190175673750243837624",
"301055795422977177402215138914201739528",
"266747147499409258860726759563350219468"
],
"threshold": 0.9
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c"
},
"id": "CVE-2022-49580-bca88082",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e045d672ba06e1d35bacb56374d350de0ac99066",
"digest": {
"line_hashes": [
"51505947204966767928268804219723944194",
"214214421529247474190175673750243837624",
"301055795422977177402215138914201739528",
"266747147499409258860726759563350219468"
],
"threshold": 0.9
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"target": {
"file": "net/ipv4/fib_semantics.c",
"function": "fib_select_multipath"
},
"id": "CVE-2022-49580-d5b3d8ab",
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b8d345db03b4deffb4f04219a51d3b1e94171b76",
"digest": {
"function_hash": "76213728495587966225134535026283533242",
"length": 609.0
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49580.json"