We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-50022

drivers:md:fix a potential use-after-free bug



Description

In the Linux kernel, the following vulnerability has been resolved: drivers:md:fix a potential use-after-free bug In line 2884, "raid5_release_stripe(sh);" drops the reference to sh and may cause sh to be released. However, sh is subsequently used in lines 2886 "if (sh->batch_head && sh != sh->batch_head)". This may result in an use-after-free bug. It can be fixed by moving "raid5_release_stripe(sh);" to the bottom of the function.

Reserved 2025-06-18 | Published 2025-06-18 | Updated 2025-06-18 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 7470a4314b239e9a9580f248fdf4c9a92805490e
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 09cf99bace7789d91caa8d10fbcfc8b2fb35857f
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before e5b3dd2d92c4511e81f6e4ec9c5bb7ad25e03d13
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before f5d46f1b47f65da1faf468277b261eb78c8e25b5
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 5d8325fd15892c8ab1146edc1d7ed8463de39636
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before d9b94c3ace549433de8a93eeb27b0391fc8ac406
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before eb3a4f73f43f839df981dda5859e8e075067a360
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 104212471b1c1817b311771d817fb692af983173
affected

Default status
affected

4.9.326
unaffected

4.14.291
unaffected

4.19.256
unaffected

5.4.211
unaffected

5.10.138
unaffected

5.15.63
unaffected

5.19.4
unaffected

6.0
unaffected

References

git.kernel.org/...c/7470a4314b239e9a9580f248fdf4c9a92805490e

git.kernel.org/...c/09cf99bace7789d91caa8d10fbcfc8b2fb35857f

git.kernel.org/...c/e5b3dd2d92c4511e81f6e4ec9c5bb7ad25e03d13

git.kernel.org/...c/f5d46f1b47f65da1faf468277b261eb78c8e25b5

git.kernel.org/...c/5d8325fd15892c8ab1146edc1d7ed8463de39636

git.kernel.org/...c/d9b94c3ace549433de8a93eeb27b0391fc8ac406

git.kernel.org/...c/eb3a4f73f43f839df981dda5859e8e075067a360

git.kernel.org/...c/104212471b1c1817b311771d817fb692af983173

cve.org (CVE-2022-50022)

nvd.nist.gov (CVE-2022-50022)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2022-50022

Support options

Helpdesk Chat, Email, Knowledgebase