Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-49326

17
FAUCET Score

CVE-2022-49326 is a kernel panic vulnerability in the Linux kernel's rtl818x wireless driver, specifically affecting rtl8180/rtl8185 cards. This medium-severity vulnerability (CVSS 5.5) can be triggered by a local attacker with low privileges, leading to a denial of service (system crash). The issue arises from the driver attempting to use uninitialized transmit queues when wpa_supplicant 2.10 or later tries to set a priority for these cards, which lack Quality of Service (QoS) support. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
< 4.9.318CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.10, < 4.14.283CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.15, < 4.19.247CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.198CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.121CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.29%
Probability of exploitation in next 30 days
EPSS Percentile
21.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0029 is in the 78th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2022-49326Moderate

kernel: rtl818x: Prevent using not initialized queues

Feb 26, 2025

References

git.kernel.org / stable/c/6ad81ad0cf5744738ce94c8e64051ddd80a1734c
Patch
git.kernel.org / stable/c/746285cf81dc19502ab238249d75f5990bd2d231
Patch
git.kernel.org / stable/c/769ec2a824deae2f1268dfda14999a4d14d0d0c5
Patch
git.kernel.org / stable/c/98e55b0b876bde3353f4e074883d66ecb55c65a3
Patch
git.kernel.org / stable/c/9ad1981fc4de3afb7db3e8eb5a6a52d4c7d0d577
Patch
git.kernel.org / stable/c/9d5e96cc1f1720019ce27b127a31695148d38bb0
Patch
git.kernel.org / stable/c/b5dca2cd3f0239512da808598b4e70557eb4c2a1
Patch
git.kernel.org / stable/c/b8ce58ab80faaea015c206382041ff3bcf5495ff
Patch
git.kernel.org / stable/c/d7e30dfc166d33470bba31a42f9bbc346e5409d5
Patch