VYPR
High severity7.8NVD Advisory· Published Jun 18, 2025· Updated Aug 4, 2026

CVE-2022-49991

CVE-2022-49991

Description

In the Linux kernel, the following vulnerability has been resolved:

mm/hugetlb: avoid corrupting page->mapping in hugetlb_mcopy_atomic_pte

In MCOPY_ATOMIC_CONTINUE case with a non-shared VMA, pages in the page cache are installed in the ptes. But hugepage_add_new_anon_rmap is called for them mistakenly because they're not vm_shared. This will corrupt the page->mapping used by page cache code.

Affected products

6
  • Linux/Kernelcpe-rescue5 versions
    5.13+ 4 more
    • (no CPE)range: 5.13
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=5.13,<5.15.65
    • cpe:2.3:o:linux:linux_kernel:6.0:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.0:rc2:*:*:*:*:*:*
    • (no CPE)
  • osv-coords
    Range: >= 5.13.0, < 5.15.65

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.