Kpatch: mm/mremap.c: incomplete fix for cve-2022-41222
Published Nov 3, 2023
7.0
HIGHCVSS 3.1
EPSS 0.23%
Description
A use-after-free flaw was found in the Linux kernel’s mm/mremap memory address space accounting source code. This issue occurs due to a race condition between rmap walk and mremap, allowing a local user to crash the system or potentially escalate their privileges on the system.
Affected products
No data.
Configuration 1
- < 5.14
Configuration 2
- 8.0
- 8.8
- 8.0_ppc64le
- 8.8_ppc64le
- 8.8
No data.
Red Hat Enterprise Linux 8
kpatch-patch
Fixed · RHSA-2023:1659
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | kpatch-patch | Fixed | RHSA-2023:1659 |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat Product Security is aware of this issue. Updates will be released as they become available.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
NoTechnical Impact
TotalDecision
n/aAssessed Feb 26, 2025 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2023–2026- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (6 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 0.23% (0.00232) | 12.72th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.23% (0.00232) | 13.78th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.02% (0.00018) | 2.54th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.04% (0.00042) | 5.07th | v3 (v2023.03.01) |
| Nov 14, 2023 | 0.04% (0.00042) | 5.71th | v3 (v2023.03.01) |
| Nov 3, 2023 | 0.05% (0.00050) | 17.15th | v3 (v2023.03.01) |
References (6)
- https://access.redhat.com/errata/RHSA-2023:1659 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2023-1476 vdb-entryx_refsource_REDHATThird Party AdvisoryVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2176035 issue-trackingx_refsource_REDHATIssue Tracking
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=97113eb39fa7972722ff490b947d8af023e1f6a2 Mailing ListPatch
- https://nvd.nist.gov/vuln/detail/CVE-2023-1476
- https://www.cve.org/CVERecord?id=CVE-2023-1476
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/errata/RHSA-2023:1659 | vendor-advisoryx_refsource_REDHATThird Party Advisory | |
| https://access.redhat.com/security/cve/CVE-2023-1476 | vdb-entryx_refsource_REDHATThird Party AdvisoryVendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2176035 | issue-trackingx_refsource_REDHATIssue Tracking | |
| https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=97113eb39fa7972722ff490b947d8af023e1f6a2 | Mailing ListPatch | |
| https://nvd.nist.gov/vuln/detail/CVE-2023-1476 | ||
| https://www.cve.org/CVERecord?id=CVE-2023-1476 |
Change history (0)
No recorded changes yet.