Security Advisory

CVE-2022-49852

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-01 14:10:07
Last updated 2026-05-11 19:08:00
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: riscv: process: fix kernel info leakage thread_structs s[12] may contain random kernel memory content, which may be finally leaked to userspace. This is a security hole. Fix it by clearing the s[12] array in thread_struct when fork. As for kthread case, its better to clear the s[12] array as well.