CVE-2022-49620

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 26, 2025
Updated: Mar 11, 2025

Summary

CVE-2022-49620 is a vulnerability affecting the Linux kernel. It was identified in the tipc (Transmission Control Protocol Implementation for Linux) subsystem, specifically in the function tipc_sk_create(). This issue involves a potential refcount leak in tipc_sk_create(), which could result in a free sk (socket) in case tipc_sk_insert() fails. If successfully exploited, this vulnerability could lead to memory corruption and potential security risks. The Linux community has released a patch to address the issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share