CVE-2022-49918 Details
Description
In the Linux kernel, the following vulnerability has been resolved: ipvs: fix WARNING in __ip_vs_cleanup_batch() During the initialization of ip_vs_conn_net_init(), if file ip_vs_conn or ip_vs_conn_sync fails to be created, the initialization is successful by default. Therefore, the ip_vs_conn or ip_vs_conn_sync file doesn't be found during the remove. The following is the stack information: name 'ip_vs_conn_sync' WARNING: CPU: 3 PID: 9 at fs/proc/generic.c:712 remove_proc_entry+0x389/0x460 Modules linked in: Workqueue: netns cleanup_net RIP: 0010:remove_proc_entry+0x389/0x460 Call Trace: <TASK> __ip_vs_cleanup_batch+0x7d/0x120 ops_exit_list+0x125/0x170 cleanup_net+0x4ea/0xb00 process_one_work+0x9bf/0x1710 worker_thread+0x665/0x1080 kthread+0x2e4/0x3a0 ret_from_fork+0x1f/0x30 </TASK>
A vulnerability in the Linux kernel's IP Virtual Server (IPVS) module has been addressed. During the initialization process, if the 'ip_vs_conn' or 'ip_vs_conn_sync' files fail to be created, the initialization still completes successfully by default. This oversight leads to a warning during the cleanup process, as the removal routine cannot find the expected 'ip_vs_conn_sync' file. The warning originates from the 'remove_proc_entry' function, indicating a missed cleanup opportunity for the IPVS connection synchronization file.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/3d00c6a0da8ddcf75213e004765e4a42acc71d5d | kernel.org | Patch |
| https://git.kernel.org/stable/c/5ee2d6b726b0ce339e36569e5849692f4cf4595e | kernel.org | Patch |
| https://git.kernel.org/stable/c/7effc4ce3d1434ce6ff286866585a6e905fdbfc1 | kernel.org | Patch |
| https://git.kernel.org/stable/c/931f56d59c854263b32075bfac56fdb3b1598d1b | kernel.org | Patch |
| https://git.kernel.org/stable/c/e724220b826e008764309d2a1f55a9434a4e1530 | kernel.org | Patch |
| https://git.kernel.org/stable/c/f08ee2aa24c076f81d84e26e213d8c6f4efd9f50 | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 2.6.39, < 4.19.265 >= 4.20, < 5.4.224 >= 5.5, < 5.10.154 >= 5.11, < 5.15.78 >= 5.16, < 6.0.8 6.1 rc1 6.1 rc2 6.1 rc3 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | kernel.org |
| Nov 12, 2025 | Initial Analysis | [email protected] |
| May 1, 2025 | New CVE Received | kernel.org |