目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2022-48921— Linux kernel 安全漏洞

AI 预测 5.5 利用难度: 中等 EPSS 0.17% · P6

影响版本矩阵 14

厂商产品版本范围状态
LinuxLinuxc85c6fadbef0a3eab41540ea628fa8fe8928c820< 8f317cd888059c59e2fa924bf4b0957cfa53f78eaffected
3869eecf050416a1d19bac60926f6b5d64b0aa58< e0bcd6b5779352aed88f2e538a82a39f1a7715bbaffected
4ef0c5c6b5ba1f38f0ea1cedad0cad722f00c14a< 589a954daab5e18399860b6c8ffaeaf79844eb20affected
4ef0c5c6b5ba1f38f0ea1cedad0cad722f00c14a< 13765de8148f71fa795e0a6607de37c49ea5915aaffected
25d40b828fb855ee62e1039c65a666c9afd60786affected
5.10.80< 5.10.137affected
5.15.3< 5.15.27affected
5.14.19< 5.15affected
… +6 条更多
获取后续新漏洞提醒登录后订阅

一、 漏洞 CVE-2022-48921 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
sched/fair: Fix fault in reweight_entity
来源: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: sched/fair: Fix fault in reweight_entity Syzbot found a GPF in reweight_entity. This has been bisected to commit 4ef0c5c6b5ba ("kernel/sched: Fix sched_fork() access an invalid sched_task_group") There is a race between sched_post_fork() and setpriority(PRIO_PGRP) within a thread group that causes a null-ptr-deref in reweight_entity() in CFS. The scenario is that the main process spawns number of new threads, which then call setpriority(PRIO_PGRP, 0, -20), wait, and exit. For each of the new threads the copy_process() gets invoked, which adds the new task_struct and calls sched_post_fork() for it. In the above scenario there is a possibility that setpriority(PRIO_PGRP) and set_one_prio() will be called for a thread in the group that is just being created by copy_process(), and for which the sched_post_fork() has not been executed yet. This will trigger a null pointer dereference in reweight_entity(), as it will try to access the run queue pointer, which hasn't been set. Before the mentioned change the cfs_rq pointer for the task has been set in sched_fork(), which is called much earlier in copy_process(), before the new task is added to the thread_group. Now it is done in the sched_post_fork(), which is called after that. To fix the issue the remove the update_load param from the update_load param() function and call reweight_task() only if the task flag doesn't have the TASK_NEW flag set.
来源: CVE Program / CVE List V5
CVSS Information
N/A
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于在reweight_entity函数中存在竞争条件问题,导致在新线程调用setpriority函数时发生空指针取消引用。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商产品影响版本CPE订阅
LinuxLinux c85c6fadbef0a3eab41540ea628fa8fe8928c820 ~ 8f317cd888059c59e2fa924bf4b0957cfa53f78e -
LinuxLinux 5.16 -

二、漏洞 CVE-2022-48921 的公开POC

#POC 描述源链接神龙链接
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2022-48921 的情报信息

登录查看更多情报信息。

CVE-2022-48921 其他参考 (4)

同批安全公告 · Linux · 2024-08-22 · 共 42 条

CVE-2022-489418.8 HIGHLinux kernel 竞争条件问题漏洞
CVE-2022-489198.8 HIGHLinux kernel 安全漏洞
CVE-2022-489257.8 HIGHLinux kernel 安全漏洞
CVE-2022-489237.8 HIGHLinux kernel 安全漏洞
CVE-2022-489277.8 HIGHLinux kernel 安全漏洞
CVE-2022-489137.8 HIGHLinux kernel 安全漏洞
CVE-2022-489127.8 HIGHLinux kernel 安全漏洞
CVE-2022-489117.8 HIGHLinux kernel 安全漏洞
CVE-2022-489327.8 HIGHLinux kernel 安全漏洞
CVE-2022-489357.8 HIGHLinux kernel 安全漏洞
CVE-2022-489407.8 HIGHLinux kernel 缓冲区错误漏洞
CVE-2022-489437.1 HIGHLinux kernel 安全漏洞
CVE-2022-48933Linux kernel 安全漏洞
CVE-2022-48931Linux kernel 安全漏洞
CVE-2022-48934Linux kernel 安全漏洞
CVE-2022-48937Linux kernel 安全漏洞
CVE-2022-48930Linux kernel 安全漏洞
CVE-2022-48929Linux kernel 安全漏洞
CVE-2022-48928Linux kernel 安全漏洞
CVE-2022-48938Linux kernel 输入验证错误漏洞

显示前 20 条,共 42 条。 查看全部 &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-48921

暂无评论


发表评论