---
id: CVE-2022-3534
title: >-
  A vulnerability has been found in Linux Kernel up to
  5.10.162/5.15.85/6.0.15/6.1.1
summary: >-
  A vulnerability has been found in Linux Kernel up to
  5.10.162/5.15.85/6.0.15/6.1.1. The impacted element is the function
  btf_dump_name_dups of the file tools/lib/bpf/btf_dump.c of the component
  libbpf. The manipulation leads to use after…
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-119
  - CWE-416
  - CWE-416
vendor: linux
product: linux_kernel
affected:
  - linux_kernel
published: '2022-10-17'
updated: '2026-07-28'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2022-3534'
references:
  - url: >-
      https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next.git/commit/?id=93c660ca40b5d2f7c1b1626e955a8e9fa30e0749
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2022-3534'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/211032'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/211032/cti'
    label: cna@vuldb.com
  - url: 'https://www.kernel.org/'
    label: cna@vuldb.com
  - url: >-
      https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next.git/commit/?id=93c660ca40b5d2f7c1b1626e955a8e9fa30e0749
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://lists.debian.org/debian-lts-announce/2025/04/msg00033.html'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://vuldb.com/?id.211032'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.0091
epssPercentile: 0.58455
ingestedAt: '2026-07-28T18:38:07.907Z'
---

## Overview

A vulnerability has been found in Linux Kernel up to 5.10.162/5.15.85/6.0.15/6.1.1. The impacted element is the function btf_dump_name_dups of the file tools/lib/bpf/btf_dump.c of the component libbpf. The manipulation leads to use after free. Upgrading to version 5.10.163, 5.15.86, 6.0.16, 6.1.2 and 6.2 is sufficient to resolve this issue. The identifier of the patch is c61650b869e0b6fb0c0a28ed42d928eea969afc8/fbe08093fb2334549859829ef81d42570812597d/8c64a8e76eb85d422af5ec60ccbf26e3ead8c333/a733bf10198eb5bb927890940de8ab457491ed3b/93c660ca40b5d2f7c1b1626e955a8e9fa30e0749. You should upgrade the affected component.

## Affected

- `linux_kernel`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
