RefCount Leak in Linux Kernel v9fs Protocol
CVE-2022-49704

5.5MEDIUM

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
26 February 2025

What is CVE-2022-49704?

The Linux kernel was found to contain a vulnerability in the v9fs protocol that resulted in a refcount leak. This issue occurred due to the protocol version check being performed after the file identifier (fid) had been obtained, leading to potential unintended behavior. By moving the version check to occur earlier in the process, this vulnerability has been effectively mitigated, enhancing the overall security of the kernel and its implementations utilizing the v9fs protocol.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 6636b6dcc3db2258cd0585b8078c1c225c4b6dde

Linux 6636b6dcc3db2258cd0585b8078c1c225c4b6dde

Linux 6636b6dcc3db2258cd0585b8078c1c225c4b6dde

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.