cbcvebase.
CVE-2022-50072
published 2025-06-18

CVE-2022-50072: In the Linux kernel, the following vulnerability has been resolved: NFSv4/pnfs: Fix a use-after-free bug in open If someone cancels the open RPC call, then we…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.17%
6.1th percentile
In the Linux kernel, the following vulnerability has been resolved: NFSv4/pnfs: Fix a use-after-free bug in open If someone cancels the open RPC call, then we must not try to free either the open slot or the layoutget operation arguments, since they are likely still in use by the hung RPC call.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.2-1 (bookworm)linux 6.0.2-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 0ee5b9644f06b4d3cdcd9544f43f63312e425a4c < 76ffd2042438769298f34b76102b40dea89de61676ffd2042438769298f34b76102b40dea89de616
linuxlinux>= 4.19.247 < 4.19.2564.19.256
linuxlinux>= 5.10.122 < 5.10.1385.10.138
linuxlinux>= 5.15.47 < 5.15.635.15.63
linuxlinux>= 5.17.15 < 5.185.18
linuxlinux>= 5.18.4 < 5.195.19
linuxlinux>= 5.4.198 < 5.4.2115.4.211
linuxlinux>= 6949493884fe88500de4af182588e071cf1544ee < b03d1117e9be7c7da60e466eaf9beed85c5916c8b03d1117e9be7c7da60e466eaf9beed85c5916c8
linuxlinux>= 6949493884fe88500de4af182588e071cf1544ee < 2135e5d56278ffdb1c2e6d325dc6b87f669b9dac2135e5d56278ffdb1c2e6d325dc6b87f669b9dac
linuxlinux>= 6b3fc1496e7227cd6a39a80bbfb7588ef7c7a010 < 0fffb46ff3d5ed4668aca96441ec7a25b793bd6f0fffb46ff3d5ed4668aca96441ec7a25b793bd6f
linuxlinux>= a2b3be930e79cc5d9d829f158e31172b2043f0cd < f7ee3b772d9de87387a725caa04bc041ac7fe5ecf7ee3b772d9de87387a725caa04bc041ac7fe5ec
linuxlinux>= d4c2a041ed3ba114502d5ed6ace5b1a48d637a8e < a4cf3dadd1fa43609f7c6570c9116b0e0a9923d1a4cf3dadd1fa43609f7c6570c9116b0e0a9923d1
linuxlinux_kernel>= 0 < 5.10.140-15.10.140-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 4.19.247 < 4.19.2564.19.256
linuxlinux_kernel>= 5.10.122 < 5.10.1385.10.138
linuxlinux_kernel>= 5.15.47 < 5.15.635.15.63
linuxlinux_kernel>= 5.17.15 < 5.185.18
linuxlinux_kernel>= 5.18.4 < 5.19.45.19.4

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.