Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-49474

21
FAUCET Score

CVE-2022-49474 is a high-severity use-after-free vulnerability in the Linux kernel's Bluetooth stack, specifically affecting the sco_sock_timeout function. A race condition during consecutive socket connections can lead to a dangling sco_conn object, causing a use-after-free when the associated socket is freed and the timer callback attempts to access it. With a CVSS score of 7.8, this local attack could result in high confidentiality, integrity, and availability impacts. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.4.284, < 4.5CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.9.238, < 4.9.318CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.14.247, < 4.14.283CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.19.207, < 4.19.247CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.4.146, < 5.4.198CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.28%
Probability of exploitation in next 30 days
EPSS Percentile
19.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0028 is in the 55th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (2)

redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-49474Moderate

kernel: Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout

Feb 26, 2025

References

git.kernel.org / stable/c/36c644c63bfcaee2d3a426f45e89a9cd09799318
Patch
git.kernel.org / stable/c/390d82733a953c1fabf3de9c9618091a7a9c90a6
Patch
git.kernel.org / stable/c/537f619dea4e3fa8ed1f8f938abffe3615794bcc
Patch
git.kernel.org / stable/c/65d347cb39e2e6bd0c2a745ad7c928998ebb0162
Patch
git.kernel.org / stable/c/6f55fac0af3531cf60d11369454c41f5fc81ab3f
Patch
git.kernel.org / stable/c/7aa1e7d15f8a5b65f67bacb100d8fc033b21efa2
Patch
git.kernel.org / stable/c/7d61dbd7311ab978d8ddac1749a758de4de00374
Patch
git.kernel.org / stable/c/99df16007f4bbf9abfc3478cb17d10f0d7f8906e
Patch
git.kernel.org / stable/c/9de3dc09e56f8deacd2bdbf4cecb71e11a312405
Patch