🛡️ AZL-58998 — kernel (CVE-2022-49465)

⚪ Unknown ✅ No Known Exploit OSV
N/A
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

CVE-2022-49465 affecting package kernel for versions less than 5.15.200.1-1

In the Linux kernel, the following vulnerability has been resolved:

blk-throttle: Set BIO_THROTTLED when bio has been throttled

1.In current process, all bio will set the BIO_THROTTLED flag

after __blk_throtl_bio().

2.If bio needs to be throttled, it will start the timer and

stop submit bio directly. Bio will submit in

blk_throtl_dispatch_work_fn() when the timer expires.But in

the current process, if bio is throttled. The BIO_THROTTLED

will be set to bio after timer start. If the bio has been

completed, it may cause use-after-free blow.

BUG: KASAN: use-after-free in blk_throtl_bio+0x12f0/0x2c70

Read of size 2 at addr ffff88801b8902d4 by task fio/26380

dump_stack+0x9b/0xce

print_address_description.constprop.6+0x3e/0x60

kasan_report.cold.9+0x22/0x3a

blk_throtl_bio+0x12f0/0x2c70

submit_bio_checks+0x701/0x1550

submit_bio_noacct+0x83/0xc80

submit_bio+0xa7/0x330

mpage_readahead+0x380/0x500

read_pages+0x1c1/0xbf0

page_cache_ra_unbounded+0x471/0x6f0

do_page_cache_ra+0xda/0x110

ondemand_readahead+0x442/0xae0

page_cache_async_ra+0x210/0x300

generic_file_buffered_read+0x4d9/0x2130

generic_file_read_iter+0x315/0x490

blkdev_read_iter+0x113/0x1b0

aio_read+0x2ad/0x450

io_submit_one+0xc8e/0x1d60

__se_sys_io_submit+0x125/0x350

do_syscall_64+0x2d/0x40

entry_SYSCALL_64_after_hwframe+0x44/0xa9

Allocated by task 26380:

kasan_save_stack+0x19/0x40

__kasan_kmalloc.constprop.2+0xc1/0xd0

kmem_cache_alloc+0x146/0x440

mempool_alloc+0x125/0x2f0

bio_alloc_bioset+0x353/0x590

mpage_alloc+0x3b/0x240

do_mpage_readpage+0xddf/0x1ef0

mpage_readahead+0x264/0x500

read_pages+0x1c1/0xbf0

page_cache_ra_unbounded+0x471/0x6f0

do_page_cache_ra+0xda/0x110

ondemand_readahead+0x442/0xae0

page_cache_async_ra+0x210/0x300

generic_file_buffered_read+0x4d9/0x2130

generic_file_read_iter+0x315/0x490

blkdev_read_iter+0x113/0x1b0

aio_read+0x2ad/0x450

io_submit_one+0xc8e/0x1d60

__se_sys_io_submit+0x125/0x350

do_syscall_64+0x2d/0x40

entry_SYSCALL_64_after_hwframe+0x44/0xa9

Freed by task 0:

kasan_save_stack+0x19/0x40

kasan_set_track+0x1c/0x30

kasan_set_free_info+0x1b/0x30

__kasan_slab_free+0x111/0x160

kmem_cache_free+0x94/0x460

mempool_free+0xd6/0x320

bio_free+0xe0/0x130

bio_put+0xab/0xe0

bio_endio+0x3a6/0x5d0

blk_update_request+0x590/0x1370

scsi_end_request+0x7d/0x400

scsi_io_completion+0x1aa/0xe50

scsi_softirq_done+0x11b/0x240

blk_mq_complete_request+0xd4/0x120

scsi_mq_done+0xf0/0x200

virtscsi_vq_done+0xbc/0x150

vring_interrupt+0x179/0x390

__handle_irq_event_percpu+0xf7/0x490

handle_irq_event_percpu+0x7b/0x160

handle_irq_event+0xcc/0x170

handle_edge_irq+0x215/0xb20

common_interrupt+0x60/0x120

asm_common_interrupt+0x1e/0x40

Fix this by move BIO_THROTTLED set into the queue_lock.

Affected software

AZL-58998 is recorded against 1 package.

  • kernel (fixed in 5.15.200.1-1)

Timeline and source

Published on 26 February 2025 and last revised on 21 April 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

nvd.nist.gov (Web)

Details

Severity Unknown
CVSS Score N/A
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2025-02-26
Updated 2026-08-12
Modified 2026-04-21
Fix URL N/A

Affected Packages

Software From version Fixed in
kernel 5.15.200.1-1

Similar Threats

Free Vulnerability Check

Is your site affected by AZL-58998?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against AZL-58998 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.

Browse related advisories

All advisoriesAzure LinuxAzure Linux Undated