CVE-2022-49918
Linux Kernel vulnerability analysis and mitigation

Overview

A vulnerability in the Linux kernel's IPVS (IP Virtual Server) module was identified as CVE-2022-49918. The issue occurs during the initialization of ipvsconnnetinit(), where if the files ipvsconn or ipvsconn_sync fail to be created, the initialization incorrectly proceeds as successful by default. This vulnerability was publicly disclosed on May 1, 2025 (NVD, Wiz).

Technical details

The vulnerability manifests in the initialization process of ipvsconnnetinit() function in the Linux kernel's IPVS module. When the files ipvsconn or ipvsconnsync fail to be created, the system does not properly handle the failure case, leading to a WARNING in _ipvscleanupbatch(). The issue can be identified in the stack trace at fs/proc/generic.c:712 removeproc_entry+0x389/0x460. The vulnerability has been assigned a CVSS v3.1 base score of 5.5 with attack vector being Local (AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H) (Red Hat).

Impact

The vulnerability primarily results in system warnings during cleanup operations, specifically in the _ipvscleanupbatch() function. While the immediate impact appears to be limited to system warnings, it could potentially lead to system instability or resource management issues in the IPVS module (Wiz).

Mitigation and workarounds

Red Hat has marked this vulnerability as 'Fix deferred' for Red Hat Enterprise Linux 9 and kernel-rt packages. Users are advised to monitor vendor notifications for patch availability and apply updates when available (Red Hat).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40205HIGH7.8
  • Linux KernelLinux Kernel
  • linux-gcp-5.4
NoYesNov 12, 2025
CVE-2025-40211HIGH7.1
  • Linux KernelLinux Kernel
  • linux-gcp-6.8
NoYesNov 21, 2025
CVE-2025-40206MEDIUM5.5
  • Linux KernelLinux Kernel
  • kernel-zfcpdump-modules-extra
NoYesNov 12, 2025
CVE-2025-40210MEDIUM5.1
  • Linux KernelLinux Kernel
  • kernel-rt-64k-modules
NoYesNov 21, 2025
CVE-2025-40212N/AN/A
  • Linux KernelLinux Kernel
  • linux-azure-6.14
NoYesNov 24, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management