PT-2025-41043 · Linux · Linux Kernel

CVE-2022-50538

·

Publicado

2022-12-05

·

Atualizado

2025-10-17

CVSS v3.1

7.6

Alta

VetorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the Linux kernel where an error in the fake init() function was not properly handled. Specifically, a failure in root device register() was ignored, potentially leading to issues during unregistration of the vme root device upon exit. This could result in a general protection fault and a null-ptr-deref, as indicated by KASAN. The root cause involves a missing error check after calling root device register().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-03814
CVE-2022-50538
OESA-2025-2468

Produtos afetados

Linux Kernel