cbcvebase.
CVE-2022-49057
published 2025-02-26

CVE-2022-49057: In the Linux kernel, the following vulnerability has been resolved: block: null_blk: end timed out poll request When poll request is timed out, it is removed…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.3th percentile
In the Linux kernel, the following vulnerability has been resolved: block: null_blk: end timed out poll request When poll request is timed out, it is removed from the poll list, but not completed, so the request is leaked, and never get chance to complete. Fix the issue by ending it in timeout handler.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.17.6-1 (bookworm)linux 5.17.6-1 (bookworm)
linuxlinux
linuxlinux>= 0a593fbbc245a85940ed34caa3aa1e4cb060c54b < 407d09a22f3f685fd634aa5d05840c64b23bfebc407d09a22f3f685fd634aa5d05840c64b23bfebc
linuxlinux>= 0a593fbbc245a85940ed34caa3aa1e4cb060c54b < 3e3876d322aef82416ecc496a4d4a587e0fdf7a33e3876d322aef82416ecc496a4d4a587e0fdf7a3
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.17.6-15.17.6-1
linuxlinux_kernel>= 0 < 5.17.6-15.17.6-1
linuxlinux_kernel>= 0 < 5.17.6-15.17.6-1
linuxlinux_kernel>= 5.16 < 5.17.45.17.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.