cifs: Fix connections leak when tlink setup failed
Summary
| CVE | CVE-2022-49822 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2025-05-01 15:16:05 UTC |
| Updated | 2026-06-01 17:16:22 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: cifs: Fix connections leak when tlink setup failed If the tlink setup failed, lost to put the connections, then the module refcnt leak since the cifsd kthread not exit. Also leak the fscache info, and for next mount with fsc, it will print the follow errors: CIFS: Cache volume key already in use (cifs,127.0.0.1:445,TEST) Let's check the result of tlink setup, and do some cleanup. |
Risk And Classification
Primary CVSS: v3.1 5.5 MEDIUM from [email protected]
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Problem Types: CWE-401
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | All | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected 56c762eb9bee330bb4e6d11c589434f2904d3ab6 775d6625f96b26b90b9be9164b855ea2c471c0e5 git | Not specified |
| CNA | Linux | Linux | affected 56c762eb9bee330bb4e6d11c589434f2904d3ab6 a9059e338fc000c0b87d8cf29e93c74fd703212e git | Not specified |
| CNA | Linux | Linux | affected 56c762eb9bee330bb4e6d11c589434f2904d3ab6 0a087842d10b5daa123ee5291e386cdd78413705 git | Not specified |
| CNA | Linux | Linux | affected 56c762eb9bee330bb4e6d11c589434f2904d3ab6 1dcdf5f5b2137185cbdd5385f29949ab3da4f00c git | Not specified |
| CNA | Linux | Linux | affected 5.0 | Not specified |
| CNA | Linux | Linux | unaffected 5.0 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.258 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.81 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.0.10 6.0.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/775d6625f96b26b90b9be9164b855ea2c471c0e5 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/1dcdf5f5b2137185cbdd5385f29949ab3da4f00c | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/a9059e338fc000c0b87d8cf29e93c74fd703212e | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/0a087842d10b5daa123ee5291e386cdd78413705 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.