{"id":"DEBIAN-CVE-2022-49542","details":"In the Linux kernel, the following vulnerability has been resolved:  scsi: lpfc: Move cfg_log_verbose check before calling lpfc_dmp_dbg()  In an attempt to log message 0126 with LOG_TRACE_EVENT, the following hard lockup call trace hangs the system.  Call Trace:  _raw_spin_lock_irqsave+0x32/0x40  lpfc_dmp_dbg.part.32+0x28/0x220 [lpfc]  lpfc_cmpl_els_fdisc+0x145/0x460 [lpfc]  lpfc_sli_cancel_jobs+0x92/0xd0 [lpfc]  lpfc_els_flush_cmd+0x43c/0x670 [lpfc]  lpfc_els_flush_all_cmd+0x37/0x60 [lpfc]  lpfc_sli4_async_event_proc+0x956/0x1720 [lpfc]  lpfc_do_work+0x1485/0x1d70 [lpfc]  kthread+0x112/0x130  ret_from_fork+0x1f/0x40 Kernel panic - not syncing: Hard LOCKUP  The same CPU tries to claim the phba-\u003eport_list_lock twice.  Move the cfg_log_verbose checks as part of the lpfc_printf_vlog() and lpfc_printf_log() macros before calling lpfc_dmp_dbg().  There is no need to take the phba-\u003eport_list_lock within lpfc_dmp_dbg().","modified":"2026-08-27T23:04:18.491813800Z","published":"2025-02-26T07:01:30.133Z","upstream":["CVE-2022-49542"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2022-49542"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.18.5-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-49542.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.18.5-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-49542.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.18.5-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-49542.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}