CVE-2022-49100
In the Linux kernel, the following vulnerability has been resolved: virtio_console: eliminate anonymous module_init & module_exit Eliminate anonymous module_init() and module_exit(), which can lead to confusion or ambiguity when reading System.map,…
Does this matter?
Lower severity and a low EPSS score (0.26%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: virtio_console: eliminate anonymous module_init & module_exit Eliminate anonymous module_init() and module_exit(), which can lead to confusion or ambiguity when reading System.map, crashes/oops/bugs, or an initcall_debug log. Give each of these init and exit functions unique driver-specific names to eliminate the anonymous names. Example 1: (System.map) ffffffff832fc78c t init ffffffff832fc79e t init ffffffff832fc8f8 t init Example 2: (initcall_debug log) calling init+0x0/0x12 @ 1 initcall init+0x0/0x12 returned 0 after 15 usecs calling init+0x0/0x60 @ 1 initcall init+0x0/0x60 returned 0 after 2 usecs calling init+0x0/0x9a @ 1 initcall init+0x0/0x9a returned 0 after 74 usecs
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.26% probability · 17th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/0f3d824bd70a1303464d5e93ee3e7afe7832fe89Patch
- https://git.kernel.org/stable/c/3504b0a177208eda85bf472bbf7c9aa77d2b8343Patch
- https://git.kernel.org/stable/c/3fd5dee7404ce40c79cba468bb2510115639d975Patch
- https://git.kernel.org/stable/c/44c2d5fbe7b2bd1f8cb114d608a591a73a5d4ae6Patch
- https://git.kernel.org/stable/c/71612aee09ecea3475f8751dc841d75a011b1fd0Patch
- https://git.kernel.org/stable/c/7deaddb704713608e0ae559e27185581b9af71a0Patch
- https://git.kernel.org/stable/c/93e3d88321d2274fa4e26b006e19cc10fec331c2Patch
- https://git.kernel.org/stable/c/c69b442125bf009fce26e15aa5616caf8a3673c3Patch
- https://git.kernel.org/stable/c/fefb8a2a941338d871e2d83fbd65fbfa068857bdPatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.