CVE-2022-49917

HIGH

Linux Kernel 2.6.24-6.0.8 DoS via ip_vs_app_net_cleanup()

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ipvs: fix WARNING in ip_vs_app_net_cleanup() During the initialization of ip_vs_app_net_init(), if file ip_vs_app fails to be created, the initialization is successful by default. Therefore, the ip_vs_app file doesn't be found during the remove in ip_vs_app_net_cleanup(). It will cause WRNING. The following is the stack information: name 'ip_vs_app' WARNING: CPU: 1 PID: 9 at fs/proc/generic.c:712 remove_proc_entry+0x389/0x460 Modules linked in: Workqueue: netns cleanup_net RIP: 0010:remove_proc_entry+0x389/0x460 Call Trace: <TASK> ops_exit_list+0x125/0x170 cleanup_net+0x4ea/0xb00 process_one_work+0x9bf/0x1710 worker_thread+0x665/0x1080 kthread+0x2e4/0x3a0 ret_from_fork+0x1f/0x30 </TASK>

Scores

CVSS v3 7.8
EPSS 0.0020
EPSS Percentile 10.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (21)
linux/Kernel 2.6.24 - 4.19.265linux
linux/Kernel 4.20.0 - 5.4.224linux
linux/Kernel 5.11.0 - 5.15.78linux
linux/Kernel 5.16.0 - 6.0.8linux
linux/Kernel 5.5.0 - 5.10.154linux
Linux/Linux < 2.6.24
Linux/Linux 2.6.24
Linux/Linux 4.19.265 - 4.19.*
Linux/Linux 457c4cbc5a3dde259d2a1f15d5f9785290397267 - 06d7596d18725f1a93cf817662d36050e5afb989
Linux/Linux 457c4cbc5a3dde259d2a1f15d5f9785290397267 - 2c8d81bdb2684d53d6cedad7410ba4cf9090e343
... and 11 more
Published May 01, 2025
Tracked Since Feb 18, 2026