CVE-2022-41222: Canonical Ubuntu Linux

High severity, CVSS 7.0. EPSS: 0.5% chance of exploitation in the next 30 days.

mm/mremap.c in the Linux kernel before 5.13.3 has a use-after-free via a stale TLB because an rmap lock is not held during a PUD move.

Affected products

  • Canonical Ubuntu Linux: version 18.04 only; version 20.04 only; version 22.04 only
  • Debian Debian Linux: version 10.0 only
  • Linux Linux Kernel: from 5.0, before 5.4.211 (fixed in 5.4.211); from 5.5, before 5.10.137 (fixed in 5.10.137); from 5.11, before 5.12.18 (fixed in 5.12.18); from 5.13, before 5.13.3 (fixed in 5.13.3)
  • Netapp Hci Baseboard Management Controller: version h300s only; version h410c only; version h410s only; version h500s only; version h700s only

Published 2022-09-21. Last modified 2026-06-17.