PT-2025-40727 · Qla2Xxx+5 · Qla2Xxx+5

CVE-2022-50493

·

Published

2022-11-29

·

Updated

2026-08-23

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s SCSI subsystem, specifically within the qla2xxx driver. A crash can occur during CPU hotplug operations when an I/O abort times out, leading to completion being called on an already completed I/O request. This issue arises from a missing check to verify if the I/O and abort request are still outstanding before attempting completion. The crash stack trace includes function calls such as qla24xx process response queue(), qla2x00 start nvme mq(), qla nvme post cmd(), nvme fc start fcp op(), blk mq dispatch rq list(), blk mq sched dispatch requests(), blk mq sched dispatch requests(), blk mq run hw queue(), blk mq delay run hw queue(), blk execute rq(), nvme submit sync cmd(), nvmf connect admin queue(), nvme fc create association.cold(), nvme fc connect ctrl work(), and process one work().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09033
CVE-2022-50493
RHSA-2023:2951
RHSA-2023:4130
SUSE-SU-2025:4111-1
SUSE-SU-2025:4135-1
SUSE-SU-2025:4139-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4188-1
SUSE-SU-2025:4189-1
SUSE-SU-2025:4320-1

Affected Products

Centos
Debian
Linux Kernel
Red Hat
Suse
Qla2Xxx