CVE-2022-50030
published 2025-06-18CVE-2022-50030: In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input Malformed…
PriorityP341high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.18%
8.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
Malformed user input to debugfs results in buffer overflow crashes. Adapt
input string lengths to fit within internal buffers, leaving space for NULL
terminators.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.2-1 (bookworm) | linux 6.0.2-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= bd2cdd5e400f5914bc30d5cfb0a0185cf51e4424 < 927907f1cbb3408cadde637fccfc17bb6b10a87d | 927907f1cbb3408cadde637fccfc17bb6b10a87d |
| linux | linux | >= bd2cdd5e400f5914bc30d5cfb0a0185cf51e4424 < c29a4baaad38a332c0ae480cf6d6c5bf75ac1828 | c29a4baaad38a332c0ae480cf6d6c5bf75ac1828 |
| linux | linux | >= bd2cdd5e400f5914bc30d5cfb0a0185cf51e4424 < b92506dc51f81741eb26609175ac206c20f06e0a | b92506dc51f81741eb26609175ac206c20f06e0a |
| linux | linux | >= bd2cdd5e400f5914bc30d5cfb0a0185cf51e4424 < 2d544e9d19c109dfe34b3dc1253a8b2971abe060 | 2d544e9d19c109dfe34b3dc1253a8b2971abe060 |
| linux | linux | >= bd2cdd5e400f5914bc30d5cfb0a0185cf51e4424 < f8191d40aa612981ce897e66cda6a88db8df17bb | f8191d40aa612981ce897e66cda6a88db8df17bb |
| linux | linux_kernel | < 5.4.211 | 5.4.211 |
| linux | linux_kernel | >= 0 < 5.10.140-1 | 5.10.140-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 5.11 < 5.15.63 | 5.15.63 |
| linux | linux_kernel | >= 5.16 < 5.19.4 | 5.19.4 |
| linux | linux_kernel | >= 5.5 < 5.10.138 | 5.10.138 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2022-50030: In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input M
osv·2025-06-18·CVSS 7.8
CVE-2022-50030 [HIGH] CVE-2022-50030: In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input M
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input Malformed user input to debugfs results in buffer overflow crashes. Adapt input string lengths to fit within internal buffers, leaving space for NULL terminators.
GHSA
GHSA-v52p-5xjx-x5ff: In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
ghsa_unreviewed·2025-06-18
CVE-2022-50030 [HIGH] CWE-787 GHSA-v52p-5xjx-x5ff: In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
Malformed user input to debugfs results in buffer overflow crashes. Adapt
input string lengths to fit within internal buffers, leaving space for NULL
terminators.
Red Hat
kernel: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
vendor_redhat·2025-06-18·CVSS 7.8
CVE-2022-50030 [HIGH] CWE-787 kernel: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
kernel: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input
Malformed user input to debugfs results in buffer overflow crashes. Adapt
input string lengths to fit within internal buffers, leaving space for NULL
terminators.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 7) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 8) - Affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Affected
Debian
CVE-2022-50030: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc:...
vendor_debian·2022·CVSS 7.8
CVE-2022-50030 [HIGH] CVE-2022-50030: linux - In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc:...
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input Malformed user input to debugfs results in buffer overflow crashes. Adapt input string lengths to fit within internal buffers, leaving space for NULL terminators.
Scope: local
bookworm: resolved (fixed in 6.0.2-1)
bullseye: resolved (fixed in 5.10.140-1)
forky: resolved (fixed in 6.0.2-1)
sid: resolved (fixed in 6.0.2-1)
trixie: resolved (fixed in 6.0.2-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/2d544e9d19c109dfe34b3dc1253a8b2971abe060https://git.kernel.org/stable/c/927907f1cbb3408cadde637fccfc17bb6b10a87dhttps://git.kernel.org/stable/c/b92506dc51f81741eb26609175ac206c20f06e0ahttps://git.kernel.org/stable/c/c29a4baaad38a332c0ae480cf6d6c5bf75ac1828https://git.kernel.org/stable/c/f8191d40aa612981ce897e66cda6a88db8df17bb
2025-06-18
Published