In the Linux kernel, the following vulnerability has been resolved:
ipv4: Fix a data-race around sysctlfibsync_mem.
While reading sysctlfibsyncmem, it can be changed concurrently. So, we need to add READONCE() to avoid a data-race.
[
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"331408230632609045309475388513235850202",
"67237902359589225346197405799102564852",
"288326806842492204238637555448689502302",
"312954027372347261073886977111847123462"
]
},
"target": {
"file": "net/ipv4/fib_trie.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@418b191d5f223a8cb6cab09eae1f72c04ba6adf2",
"id": "CVE-2022-49637-1b87af46",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"331408230632609045309475388513235850202",
"67237902359589225346197405799102564852",
"288326806842492204238637555448689502302",
"312954027372347261073886977111847123462"
]
},
"target": {
"file": "net/ipv4/fib_trie.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9be8aac91960ea32fd0e874758c9afee665c57d2",
"id": "CVE-2022-49637-214d1063",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "319166575465449101970326104535853299082",
"length": 346.0
},
"target": {
"file": "net/ipv4/fib_trie.c",
"function": "tnode_free"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@190cd4ff128373271e065afb20f1d2247b3f10c3",
"id": "CVE-2022-49637-47a2d715",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"331408230632609045309475388513235850202",
"67237902359589225346197405799102564852",
"288326806842492204238637555448689502302",
"312954027372347261073886977111847123462"
]
},
"target": {
"file": "net/ipv4/fib_trie.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7c1acd98fb221dc0d847451b9ab86319f8b9916c",
"id": "CVE-2022-49637-55b92051",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"331408230632609045309475388513235850202",
"67237902359589225346197405799102564852",
"288326806842492204238637555448689502302",
"312954027372347261073886977111847123462"
]
},
"target": {
"file": "net/ipv4/fib_trie.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@190cd4ff128373271e065afb20f1d2247b3f10c3",
"id": "CVE-2022-49637-6147b273",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "319166575465449101970326104535853299082",
"length": 346.0
},
"target": {
"file": "net/ipv4/fib_trie.c",
"function": "tnode_free"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7c1acd98fb221dc0d847451b9ab86319f8b9916c",
"id": "CVE-2022-49637-6b0ed870",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "319166575465449101970326104535853299082",
"length": 346.0
},
"target": {
"file": "net/ipv4/fib_trie.c",
"function": "tnode_free"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@73318c4b7dbd0e781aaababff17376b2894745c0",
"id": "CVE-2022-49637-6d605fc5",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"331408230632609045309475388513235850202",
"67237902359589225346197405799102564852",
"288326806842492204238637555448689502302",
"312954027372347261073886977111847123462"
]
},
"target": {
"file": "net/ipv4/fib_trie.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@73318c4b7dbd0e781aaababff17376b2894745c0",
"id": "CVE-2022-49637-76c473da",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "319166575465449101970326104535853299082",
"length": 346.0
},
"target": {
"file": "net/ipv4/fib_trie.c",
"function": "tnode_free"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9be8aac91960ea32fd0e874758c9afee665c57d2",
"id": "CVE-2022-49637-a8bf1663",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "319166575465449101970326104535853299082",
"length": 346.0
},
"target": {
"file": "net/ipv4/fib_trie.c",
"function": "tnode_free"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@418b191d5f223a8cb6cab09eae1f72c04ba6adf2",
"id": "CVE-2022-49637-b2df529c",
"deprecated": false,
"signature_version": "v1"
}
]