[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-DEBIAN-CVE-2022-49440":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":16,"duplicates":17,"related":18,"reserved_at":9,"published_at":19,"modified_at":20,"state":9,"summary":21,"references_raw":23,"kevs":30,"epss":9,"epss_history":31,"metrics":32,"affected":39},"DEBIAN-CVE-2022-49440","In the Linux kernel, the following vulnerability has been resolved:  powerpc/rtas: Keep MSR[RI] set when calling RTAS  RTAS runs in real mode (MSR[DR] and MSR[IR] unset) and in 32-bit big endian mode (MSR[SF,LE] unset).  The change in MSR is done in enter_rtas() in a relatively complex way, since the MSR value could be hardcoded.  Furthermore, a panic has been reported when hitting the watchdog interrupt while running in RTAS, this leads to the following stack trace:    watchdog: CPU 24 Hard LOCKUP   watchdog: CPU 24 TB:997512652051031, last heartbeat TB:997504470175378 (15980ms ago)   ...   Supported: No, Unreleased kernel   CPU: 24 PID: 87504 Comm: drmgr Kdump: loaded Tainted: G            E  X    5.14.21-150400.71.1.bz196362_2-default #1 SLE15-SP4 (unreleased) 0d821077ef4faa8dfaf370efb5fdca1fa35f4e2c   NIP:  000000001fb41050 LR: 000000001fb4104c CTR: 0000000000000000   REGS: c00000000fc33d60 TRAP: 0100   Tainted: G            E  X     (5.14.21-150400.71.1.bz196362_2-default)   MSR:  8000000002981000 \u003CSF,VEC,VSX,ME>  CR: 48800002  XER: 20040020   CFAR: 000000000000011c IRQMASK: 1   GPR00: 0000000000000003 ffffffffffffffff 0000000000000001 00000000000050dc   GPR04: 000000001ffb6100 0000000000000020 0000000000000001 000000001fb09010   GPR08: 0000000020000000 0000000000000000 0000000000000000 0000000000000000   GPR12: 80040000072a40a8 c00000000ff8b680 0000000000000007 0000000000000034   GPR16: 000000001fbf6e94 000000001fbf6d84 000000001fbd1db0 000000001fb3f008   GPR20: 000000001fb41018 ffffffffffffffff 000000000000017f fffffffffffff68f   GPR24: 000000001fb18fe8 000000001fb3e000 000000001fb1adc0 000000001fb1cf40   GPR28: 000000001fb26000 000000001fb460f0 000000001fb17f18 000000001fb17000   NIP [000000001fb41050] 0x1fb41050   LR [000000001fb4104c] 0x1fb4104c   Call Trace:   Instruction dump:   XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX   XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX   Oops: Unrecoverable System Reset, sig: 6 [#1]   LE PAGE_SIZE=64K MMU=Hash SMP NR_CPUS=2048 NUMA pSeries   ...   Supported: No, Unreleased kernel   CPU: 24 PID: 87504 Comm: drmgr Kdump: loaded Tainted: G            E  X    5.14.21-150400.71.1.bz196362_2-default #1 SLE15-SP4 (unreleased) 0d821077ef4faa8dfaf370efb5fdca1fa35f4e2c   NIP:  000000001fb41050 LR: 000000001fb4104c CTR: 0000000000000000   REGS: c00000000fc33d60 TRAP: 0100   Tainted: G            E  X     (5.14.21-150400.71.1.bz196362_2-default)   MSR:  8000000002981000 \u003CSF,VEC,VSX,ME>  CR: 48800002  XER: 20040020   CFAR: 000000000000011c IRQMASK: 1   GPR00: 0000000000000003 ffffffffffffffff 0000000000000001 00000000000050dc   GPR04: 000000001ffb6100 0000000000000020 0000000000000001 000000001fb09010   GPR08: 0000000020000000 0000000000000000 0000000000000000 0000000000000000   GPR12: 80040000072a40a8 c00000000ff8b680 0000000000000007 0000000000000034   GPR16: 000000001fbf6e94 000000001fbf6d84 000000001fbd1db0 000000001fb3f008   GPR20: 000000001fb41018 ffffffffffffffff 000000000000017f fffffffffffff68f   GPR24: 000000001fb18fe8 000000001fb3e000 000000001fb1adc0 000000001fb1cf40   GPR28: 000000001fb26000 000000001fb460f0 000000001fb17f18 000000001fb17000   NIP [000000001fb41050] 0x1fb41050   LR [000000001fb4104c] 0x1fb4104c   Call Trace:   Instruction dump:   XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX   XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX XXXXXXXX   ---[ end trace 3ddec07f638c34a2 ]---  This happens because MSR[RI] is unset when entering RTAS but there is no valid reason to not set it here.  RTAS is expected to be called with MSR[RI] as specified in PAPR+ section \"7.2.1 Machine State\":    R1–7.2.1–9. If called with MSR[RI] equal to 1, then RTAS must protect   its own critical regions from recursion by setting the MSR[RI] bit to   0 when in the critical regions.  Fixing this by reviewing the way MSR is compute before calling RTAS. Now a hardcoded value meaning real  ---truncated---",null,[],[],[],[14],{"_key":15},"CVE-2022-49440",[],[],[],"2025-02-26T07:01:20.430Z","2026-04-28T20:25:11.885948Z",{"cisa_kev":22,"cisa_ransomware":22,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[24],{"url":25,"sources":26,"tags":28},"https://security-tracker.debian.org/tracker/CVE-2022-49440",[27],"osv_debian",[29],"Advisory",[],[],[33],{"source":27,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":34,"cvss_v4_0":9},{"baseScore":35,"baseSeverity":9,"vectorString":36,"impactScore":37,"exploitabilityScore":38},5.5,"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",6,4.6,[40],{"ecosystem":41,"name":42,"vendor":43,"product":42,"cpe_part":9,"purl_type":44,"purl_namespace":43,"purl_name":42,"source":9,"versions":45},"Debian","linux","debian","deb",[46,50,54,55],{"version":47,"is_range":48,"range_type":49,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"all",true,"ecosystem",{"version":51,"is_range":48,"range_type":49,"version_start":9,"version_start_type":9,"version_end":52,"version_end_type":53,"fixed_in":9},"lt5_18_5_1","5.18.5-1","excluding",{"version":51,"is_range":48,"range_type":49,"version_start":9,"version_start_type":9,"version_end":52,"version_end_type":53,"fixed_in":9},{"version":51,"is_range":48,"range_type":49,"version_start":9,"version_start_type":9,"version_end":52,"version_end_type":53,"fixed_in":9}]