CVE-2022-49862

MEDIUM

Linux Kernel - Use of Uninitialized Resource in TIPC Netlink Compatibility Dump

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: tipc: fix the msg->req tlv len check in tipc_nl_compat_name_table_dump_header This is a follow-up for commit 974cb0e3e7c9 ("tipc: fix uninit-value in tipc_nl_compat_name_table_dump") where it should have type casted sizeof(..) to int to work when TLV_GET_DATA_LEN() returns a negative value. syzbot reported a call trace because of it: BUG: KMSAN: uninit-value in ... tipc_nl_compat_name_table_dump+0x841/0xea0 net/tipc/netlink_compat.c:934 __tipc_nl_compat_dumpit+0xab2/0x1320 net/tipc/netlink_compat.c:238 tipc_nl_compat_dumpit+0x991/0xb50 net/tipc/netlink_compat.c:321 tipc_nl_compat_recv+0xb6e/0x1640 net/tipc/netlink_compat.c:1324 genl_family_rcv_msg_doit net/netlink/genetlink.c:731 [inline] genl_family_rcv_msg net/netlink/genetlink.c:775 [inline] genl_rcv_msg+0x103f/0x1260 net/netlink/genetlink.c:792 netlink_rcv_skb+0x3a5/0x6c0 net/netlink/af_netlink.c:2501 genl_rcv+0x3c/0x50 net/netlink/genetlink.c:803 netlink_unicast_kernel net/netlink/af_netlink.c:1319 [inline] netlink_unicast+0xf3b/0x1270 net/netlink/af_netlink.c:1345 netlink_sendmsg+0x1288/0x1440 net/netlink/af_netlink.c:1921 sock_sendmsg_nosec net/socket.c:714 [inline] sock_sendmsg net/socket.c:734 [inline]

Scores

CVSS v3 5.5
EPSS 0.0016
EPSS Percentile 5.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-908
Status published
Products (27)
Linux/Linux < 5.0
Linux/Linux 2aae1723dea1235ffef183daf0694805297424f6 - a0ead1d648df9c456baec832b494513ef405949a
Linux/Linux 2d5fc1d492d194aa2986c5a9d8a48a60e9143a72 - 55a253a6753a603e80b95932ca971ba514aa6ce7
Linux/Linux 4.14.300 - 4.14.*
Linux/Linux 4.14.95 - 4.14.300
Linux/Linux 4.19.17 - 4.19.267
Linux/Linux 4.19.267 - 4.19.*
Linux/Linux 4.20.4 - 4.21
Linux/Linux 4.4.172 - 4.5
Linux/Linux 4.9.152 - 4.9.334
... and 17 more
Published May 01, 2025
Tracked Since Feb 18, 2026