CVE-2022-50235 — Out-of-bounds Write in Linux
CWE-787 — Out-of-bounds WriteCWE-805 — Buffer Access with Incorrect Length Value5 documents5 sources
Severity
7.8HIGHNVD
EPSS
0.0%
top 95.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 15
Description
In the Linux kernel, the following vulnerability has been resolved:
NFSD: Protect against send buffer overflow in NFSv2 READDIR
Restore the previous limit on the @count argument to prevent a
buffer overflow attack.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9
Affected Packages4 packages
▶CVEListV5linux/linux9e291a6a28d32545ed2fd959a8165144d1724df1 — 0e57d696f60dee6117a8ace0cac7c5761d375277+5
Patches
🔴Vulnerability Details
2OSV▶
CVE-2022-50235: In the Linux kernel, the following vulnerability has been resolved: NFSD: Protect against send buffer overflow in NFSv2 READDIR Restore the previous l↗2025-09-15
GHSA▶
GHSA-m9fv-443w-2xhw: In the Linux kernel, the following vulnerability has been resolved:
NFSD: Protect against send buffer overflow in NFSv2 READDIR
Restore the previous↗2025-09-15