Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-49074

17
FAUCET Score

CVE-2022-49074 is a vulnerability in the Linux kernel's GIC-v3 interrupt controller driver, specifically a polling error in the GICR_CTLR.RWP register. This medium-severity vulnerability (CVSS 5.5) allows a local attacker to cause a denial of service (A:H) with low attack complexity (AC:L) and no user interaction (UI:N). Despite being an 8-year-old bug, there is no evidence of active exploitation, public exploit code, or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 3.17, < 4.19.238CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.189CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.111CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.34CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 5.16.20CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.26%
Probability of exploitation in next 30 days
EPSS Percentile
18.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0026 is in the 73rd percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (2)

redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-49074Moderate

kernel: irqchip/gic-v3: Fix GICR_CTLR.RWP polling

Feb 26, 2025

References

git.kernel.org / stable/c/0df6664531a12cdd8fc873f0cac0dcb40243d3e9
Patch
git.kernel.org / stable/c/3c07cc242baf83f0bddbbd9d7945d0bee56d8b57
Patch
git.kernel.org / stable/c/60e1eb4811f53f5f60c788297d978515e7a2637a
Patch
git.kernel.org / stable/c/6fef3e3179e6ed8fecdd004ede541674ffa7749d
Patch
git.kernel.org / stable/c/7218a789abb3e033f5f3a85636ca50d9ae7b0fc9
Patch
git.kernel.org / stable/c/c7daf1b4ad809692d5c26f33c02ed8a031066548
Patch
git.kernel.org / stable/c/ff24114bb08d8b90edf2aff0a4fd0689523e6c17
Patch