ALSA: pcm: Fix races among concurrent prealloc proc writes
Published Feb 26, 2025
7.8
HIGHCVSS 3.1
EPSS 0.28%
Description
We have no protection against concurrent PCM buffer preallocation changes via proc files, and it may potentially lead to UAF or some weird problem. This patch applies the PCM open_mutex to the proc write operation for avoiding the racy proc writes and the PCM stream open (and further operations).
Affected products
-
Affected
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
-
Affected
- 2.6.12
Unaffected
- ≥ 0, < 2.6.12
- ≥ 4.14.279, ≤ 4.14.*
- ≥ 4.19.243, ≤ 4.19.*
- ≥ 5.10.109, ≤ 5.10.*
- ≥ 5.15.32, ≤ 5.15.*
- ≥ 5.16.18, ≤ 5.16.*
- ≥ 5.17.1, ≤ 5.17.*
- 5.18
- ≥ 5.4.193, ≤ 5.4.*
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Linux | Linux | unaffected | Affected
|
| Linux | Linux | affected | Affected
Unaffected
|
- < 4.14.279
- ≥ 4.15 · < 4.19.243
- ≥ 4.20 · < 5.4.193
- ≥ 5.5 · < 5.10.109
- ≥ 5.11 · < 5.15.32
- ≥ 5.16 · < 5.16.18
- ≥ 5.17 · < 5.17.1
No data.
Red Hat Enterprise Linux 8
kernel-0:4.18.0-425.3.1.el8
Fixed · RHSA-2022:7683
Red Hat Enterprise Linux 9
kernel-0:5.14.0-162.6.1.el9_1
Fixed · RHSA-2022:8267
Red Hat Enterprise Linux 9
kernel-0:5.14.0-162.6.1.el9_1
Fixed · RHSA-2022:8267
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-rt
Out of support scope
Red Hat Enterprise Linux 8
kernel-rt
Out of support scope
Red Hat Enterprise Linux 9
kernel-rt
Affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-425.3.1.el8 | Fixed | RHSA-2022:7683 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-162.6.1.el9_1 | Fixed | RHSA-2022:8267 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-162.6.1.el9_1 | Fixed | RHSA-2022:8267 |
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (14)
- https://access.redhat.com/security/cve/CVE-2022-49288 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2347877 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-54938 Advisory
- https://git.kernel.org/stable/c/37b12c16beb6f6c1c3c678c1aacbc46525c250f7 Patch
- https://git.kernel.org/stable/c/51fce708ab8986a9879ee5da946a2cc120f1036d Patch
- https://git.kernel.org/stable/c/5ed8f8e3c4e59d0396b9ccf2e639711e24295bb6 Patch
- https://git.kernel.org/stable/c/69534c48ba8ce552ce383b3dfdb271ffe51820c3 Patch
- https://git.kernel.org/stable/c/a21d2f323b5a978dedf9ff1d50f101f85e39b3f2 Patch
- https://git.kernel.org/stable/c/b560d670c87d7d40b3cf6949246fa4c7aa65a00a Patch
- https://git.kernel.org/stable/c/e14dca613e0a6ddc2bf6e360f16936a9f865205b Patch
- https://git.kernel.org/stable/c/e7786c445bb67a9a6e64f66ebd6b7215b153ff7d Patch
- https://lore.kernel.org/linux-cve-announce/2025022633-CVE-2022-49288-d3cb@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-49288
- https://www.cve.org/CVERecord?id=CVE-2022-49288
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data