perf: Fix list corruption in perf_cgroup_switch()
Published Jul 16, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.24%
Description
There's list corruption on cgrp_cpuctx_list. This happens on the following path:
perf_cgroup_switch: list_for_each_entry(cgrp_cpuctx_list) cpu_ctx_sched_in ctx_sched_in ctx_pinned_sched_in merge_sched_in perf_cgroup_event_disable: remove the event from the list
Use list_for_each_entry_safe() to allow removing an entry during iteration.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 4.11StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<4.11
- Version 4.14.267StatusunaffectedConstraints<=4.14.*
- Version 4.19.230StatusunaffectedConstraints<=4.19.*
- Version 5.10.101StatusunaffectedConstraints<=5.10.*
- Version 5.15.24StatusunaffectedConstraints<=5.15.*
- Version 5.16.10StatusunaffectedConstraints<=5.16.*
- Version 5.17StatusunaffectedConstraints<=*
- Version 5.4.180StatusunaffectedConstraints<=5.4.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 4.11 · < 4.14.267
- ≥ 4.15 · < 4.19.230
- ≥ 4.20 · < 5.4.180
- ≥ 5.5 · < 5.10.101
- ≥ 5.11 · < 5.15.24
- ≥ 5.16 · < 5.16.10
- 5.17
- 5.17
- 5.17
No data.
Red Hat Enterprise Linux 8.2 Advanced Update Support
kernel-0:4.18.0-193.141.1.el8_2
Fixed · RHSA-2024:6992
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
kernel-0:4.18.0-305.139.1.el8_4
Fixed · RHSA-2024:6156
Red Hat Enterprise Linux 8.4 Telecommunications Update Service
kernel-0:4.18.0-305.139.1.el8_4
Fixed · RHSA-2024:6156
Red Hat Enterprise Linux 8.4 Telecommunications Update Service
kernel-rt-0:4.18.0-305.139.1.rt7.215.el8_4
Fixed · RHSA-2024:6160
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions
kernel-0:4.18.0-305.139.1.el8_4
Fixed · RHSA-2024:6156
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
kernel-0:4.18.0-372.119.1.el8_6
Fixed · RHSA-2024:5692
Red Hat Enterprise Linux 8.6 Telecommunications Update Service
kernel-0:4.18.0-372.119.1.el8_6
Fixed · RHSA-2024:5692
Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions
kernel-0:4.18.0-372.119.1.el8_6
Fixed · RHSA-2024:5692
Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions
kernel-0:5.14.0-70.117.1.el9_0
Fixed · RHSA-2024:6991
Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions
kernel-rt-0:5.14.0-70.117.1.rt21.189.el9_0
Fixed · RHSA-2024:6990
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-rt
Out of support scope
Red Hat Enterprise Linux 8
kernel
Fix deferred
Red Hat Enterprise Linux 8
kernel-rt
Fix deferred
Red Hat Enterprise Linux 9
kernel
Fix deferred
Red Hat Enterprise Linux 9
kernel-rt
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8.2 Advanced Update Support | kernel-0:4.18.0-193.141.1.el8_2 | Fixed | RHSA-2024:6992 |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | kernel-0:4.18.0-305.139.1.el8_4 | Fixed | RHSA-2024:6156 |
| Red Hat Enterprise Linux 8.4 Telecommunications Update Service | kernel-0:4.18.0-305.139.1.el8_4 | Fixed | RHSA-2024:6156 |
| Red Hat Enterprise Linux 8.4 Telecommunications Update Service | kernel-rt-0:4.18.0-305.139.1.rt7.215.el8_4 | Fixed | RHSA-2024:6160 |
| Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions | kernel-0:4.18.0-305.139.1.el8_4 | Fixed | RHSA-2024:6156 |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | kernel-0:4.18.0-372.119.1.el8_6 | Fixed | RHSA-2024:5692 |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | kernel-0:4.18.0-372.119.1.el8_6 | Fixed | RHSA-2024:5692 |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | kernel-0:4.18.0-372.119.1.el8_6 | Fixed | RHSA-2024:5692 |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | kernel-0:5.14.0-70.117.1.el9_0 | Fixed | RHSA-2024:6991 |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | kernel-rt-0:5.14.0-70.117.1.rt21.189.el9_0 | Fixed | RHSA-2024:6990 |
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 8 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
NoTechnical Impact
PartialDecision
n/aAssessed Sep 10, 2024 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 4, 2026.
Score over time
2024-2026- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (5 key points)
Flat stretches are collapsed. Showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 4, 2026 | 0.24% (0.00242) | 13.93th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.24% (0.00240) | 14.81th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.08% (0.00081) | 21.34th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.04% (0.00044) | 12.15th | v3 (v2023.03.01) |
| Jul 17, 2024 | 0.04% (0.00044) | 10.62th | v3 (v2023.03.01) |
References (12)
- https://access.redhat.com/security/cve/CVE-2022-48799 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2298135 Issue Tracking
- https://git.kernel.org/stable/c/2142bc1469a316fddd10012d76428f7265258f81 Patch
- https://git.kernel.org/stable/c/30d9f3cbe47e1018ddc8069ac5b5c9e66fbdf727 Patch
- https://git.kernel.org/stable/c/5d76ed4223403f90421782adb2f20a9ecbc93186 Patch
- https://git.kernel.org/stable/c/5f4e5ce638e6a490b976ade4a40017b40abb2da0 Patch
- https://git.kernel.org/stable/c/7969fe91c9830e045901970e9d755b7505881d4a Patch
- https://git.kernel.org/stable/c/a2ed7b29d0673ba361546e2d87dbbed149456c45 Patch
- https://git.kernel.org/stable/c/f6b5d51976fcefef5732da3e3feb3ccff680f7c8 Patch
- https://lore.kernel.org/linux-cve-announce/2024071643-CVE-2022-48799-9594@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-48799
- https://www.cve.org/CVERecord?id=CVE-2022-48799
Change history (0)
No recorded changes yet.