{"id":"CVE-2022-48816","title":"In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: lock against ->sock changing during sysfs read\n\n->sock can be set to NULL asynchronously unless ->recv_mutex is held.\nSo it is important to hold that mutex","summary":"In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: lock against ->sock changing during sysfs read\n\n->sock can be set to NULL asynchronously unless ->recv_mutex is held.\nSo it is important to hold that mutex.  Ot…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-476"],"vendor":"linux","product":"linux_kernel","affected":["linux_kernel >= 5.10.67, < 5.11","linux_kernel >= 5.13.19, < 5.16.10","linux_kernel = 5.17"],"patched":["linux_kernel 5.16.10"],"published":"2024-07-16","updated":"2026-10-03","sourceUpdated":"2026-10-03T11:17:25.280","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2022-48816","references":[{"url":"https://git.kernel.org/stable/c/9482ab4540f5bcc869b44c067ae99b5fca16bd07","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/b49ea673e119f59c71645e2f65b3ccad857c90ee","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/cd366b9091a3e6ed8229e4b908e895d20b527dc0","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/fdc42287ae3f8a35cc2098307f52d7864b4bc8ed","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/9482ab4540f5bcc869b44c067ae99b5fca16bd07","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://git.kernel.org/stable/c/b49ea673e119f59c71645e2f65b3ccad857c90ee","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2024-09-10T16:58:15.719556Z"},"epss":0.00285,"epssPercentile":0.19054,"ingestedAt":"2026-10-03T11:43:42.100Z","slug":"CVE-2022-48816","body":"## Overview\n\nIn the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: lock against ->sock changing during sysfs read\n\n->sock can be set to NULL asynchronously unless ->recv_mutex is held.\nSo it is important to hold that mutex.  Otherwise a sysfs read can\ntrigger an oops.\nCommit 17f09d3f619a (\"SUNRPC: Check if the xprt is connected before\nhandling sysfs reads\") appears to attempt to fix this problem, but it\nonly narrows the race window.\n\n## Affected\n\n- `linux_kernel >= 5.10.67, < 5.11`\n- `linux_kernel >= 5.13.19, < 5.16.10`\n- `linux_kernel = 5.17`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `linux_kernel 5.16.10`","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}