CVE-2022-49770EPSS p45.4%
CVE-2022-49770CVE-2022-49770
linux / linux_kernel
Description
In the Linux kernel, the following vulnerability has been resolved:
ceph: avoid putting the realm twice when decoding snaps fails
When decoding the snaps fails it maybe leaving the 'first_realm'
and 'realm' pointing to the same snaprealm memory. And then it'll
put it twice and could cause random use-after-free, BUG_ON, etc
issues.
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.57% probability of exploitation · percentile 45.4% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-15 |