CVE-2022-50434
published 2025-10-01CVE-2022-50434: In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix possible memleak when register 'hctx' failed There's issue as follows when do…
PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.17%
6.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
blk-mq: fix possible memleak when register 'hctx' failed
There's issue as follows when do fault injection test:
unreferenced object 0xffff888132a9f400 (size 512):
comm "insmod", pid 308021, jiffies 4324277909 (age 509.733s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 08 f4 a9 32 81 88 ff ff ...........2....
08 f4 a9 32 81 88 ff ff 00 00 00 00 00 00 00 00 ...2............
backtrace:
[] kmalloc_node_trace+0x22/0xa0
[] blk_mq_alloc_and_init_hctx+0x3f1/0x7e0
[] blk_mq_realloc_hw_ctxs+0x1e6/0x230
[] blk_mq_init_allocated_queue+0x27e/0x910
[] __blk_mq_alloc_disk+0x67/0xf0
[] 0xffffffffa2ad310f
[] 0xffffffffa2af824a
[] do_one_initcall+0x87/0x2a0
[] do_init_module+0xdf/0x320
[] load_module+0x3006/0x3390
[] __do_sys_finit_module+0x113/0x1b0
[] do_syscall_64+0x35/0x80
[] entry_SYSCALL_64_after_hwframe+0x46/0xb0
Fault injection context as follows:
kobject_add
blk_mq_register_hctx
blk_mq_sysfs_register
blk_register_queue
device_add_disk
null_add_dev.part.0 [null_blk]
As 'blk_mq_register_hctx' may already add some objects when failed halfway,
but there isn't do fallback, caller don't know which objects add failed.
To solve above issue just do fallback when add objects failed halfway in
'blk_mq_register_hctx'.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.4-1 (bookworm) | linux 6.1.4-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < 654870789c3c1b9763316ef1c71d7a449127b175 | 654870789c3c1b9763316ef1c71d7a449127b175 |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < cb186eb47fb9dd327bdefa15f0c5fc55c53a40dd | cb186eb47fb9dd327bdefa15f0c5fc55c53a40dd |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < 02bc8bc6eab03c84373281b85cb6e98747172ff7 | 02bc8bc6eab03c84373281b85cb6e98747172ff7 |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < 87fd18016a47ea8ae12641377a390172c4aa97a7 | 87fd18016a47ea8ae12641377a390172c4aa97a7 |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < e8022da1fa2fdf2fa204b445dd3354e7a66d085a | e8022da1fa2fdf2fa204b445dd3354e7a66d085a |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < eff45bfbc25a2509a6362dea6e699e14083c693c | eff45bfbc25a2509a6362dea6e699e14083c693c |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < 4b7fafa5f39b15c3a6ca3b95e534d05d6904cc95 | 4b7fafa5f39b15c3a6ca3b95e534d05d6904cc95 |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < 33e8a3f61814ea30615d0fafaf50477975d6c1ca | 33e8a3f61814ea30615d0fafaf50477975d6c1ca |
| linux | linux | >= 67aec14ce87fe25bdfff7dbf468556333df11c4e < 4b7a21c57b14fbcd0e1729150189e5933f5088e9 | 4b7a21c57b14fbcd0e1729150189e5933f5088e9 |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 3.16 < 4.9.337 | 4.9.337 |
| linux | linux_kernel | >= 4.10 < 4.14.303 | 4.14.303 |
| linux | linux_kernel | >= 4.15 < 4.19.270 | 4.19.270 |
| linux | linux_kernel | >= 4.20 < 5.4.229 | 5.4.229 |
| linux | linux_kernel | >= 5.11 < 5.15.86 | 5.15.86 |
| linux | linux_kernel | >= 5.16 < 6.0.16 | 6.0.16 |
| linux | linux_kernel | >= 5.5 < 5.10.163 | 5.10.163 |
| linux | linux_kernel | >= 6.1 < 6.1.2 | 6.1.2 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: blk-mq: fix possible memleak when register 'hctx' failed
vendor_redhat·2025-10-01·CVSS 5.5
CVE-2022-50434 [MEDIUM] CWE-772 kernel: blk-mq: fix possible memleak when register 'hctx' failed
kernel: blk-mq: fix possible memleak when register 'hctx' failed
In the Linux kernel, the following vulnerability has been resolved:
blk-mq: fix possible memleak when register 'hctx' failed
There's issue as follows when do fault injection test:
unreferenced object 0xffff888132a9f400 (size 512):
comm "insmod", pid 308021, jiffies 4324277909 (age 509.733s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 08 f4 a9 32 81 88 ff ff ...........2....
08 f4 a9 32 81 88 ff ff 00 00 00 00 00 00 00 00 ...2............
backtrace:
[] kmalloc_node_trace+0x22/0xa0
[] blk_mq_alloc_and_init_hctx+0x3f1/0x7e0
[] blk_mq_realloc_hw_ctxs+0x1e6/0x230
[] blk_mq_init_allocated_queue+0x27e/0x910
[] __blk_mq_alloc_disk+0x67/0xf0
[] 0xffffffffa2ad310f
[] 0xffffffffa2af824a
[] do_one_initcall+0x87/0x2a0
[] do_init_m
Debian
CVE-2022-50434: linux - In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix...
vendor_debian·2022·CVSS 5.5
CVE-2022-50434 [MEDIUM] CVE-2022-50434: linux - In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix...
In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix possible memleak when register 'hctx' failed There's issue as follows when do fault injection test: unreferenced object 0xffff888132a9f400 (size 512): comm "insmod", pid 308021, jiffies 4324277909 (age 509.733s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 08 f4 a9 32 81 88 ff ff ...........2.... 08 f4 a9 32 81 88 ff ff 00 00 00 00 00 00 00 00 ...2............ backtrace: [] kmalloc_node_trace+0x22/0xa0 [] blk_mq_alloc_and_init_hctx+0x3f1/0x7e0 [] blk_mq_realloc_hw_ctxs+0x1e6/0x230 [] blk_mq_init_allocated_queue+0x27e/0x910 [] __blk_mq_alloc_disk+0x67/0xf0 [] 0xffffffffa2ad310f [] 0xffffffffa2af824a [] do_one_initcall+0x87/0x2a0 [] do_init_module+0xdf/0x320 [] load_module+0x3006/0x3390 [] __do_sys_finit_mo
OSV
CVE-2022-50434: In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix possible memleak when register 'hctx' failed There's issue as follows
osv·2025-10-01·CVSS 5.5
CVE-2022-50434 [MEDIUM] CVE-2022-50434: In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix possible memleak when register 'hctx' failed There's issue as follows
In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix possible memleak when register 'hctx' failed There's issue as follows when do fault injection test: unreferenced object 0xffff888132a9f400 (size 512): comm "insmod", pid 308021, jiffies 4324277909 (age 509.733s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 08 f4 a9 32 81 88 ff ff ...........2.... 08 f4 a9 32 81 88 ff ff 00 00 00 00 00 00 00 00 ...2............ backtrace: [] kmalloc_node_trace+0x22/0xa0 [] blk_mq_alloc_and_init_hctx+0x3f1/0x7e0 [] blk_mq_realloc_hw_ctxs+0x1e6/0x230 [] blk_mq_init_allocated_queue+0x27e/0x910 [] __blk_mq_alloc_disk+0x67/0xf0 [] 0xffffffffa2ad310f [] 0xffffffffa2af824a [] do_one_initcall+0x87/0x2a0 [] do_init_module+0xdf/0x320 [] load_module+0x3006/0x3390 [] __do_sys_finit_mo
GHSA
GHSA-46q9-g5hq-xpgm: In the Linux kernel, the following vulnerability has been resolved:
blk-mq: fix possible memleak when register 'hctx' failed
There's issue as follow
ghsa_unreviewed·2025-10-01
CVE-2022-50434 [MEDIUM] CWE-401 GHSA-46q9-g5hq-xpgm: In the Linux kernel, the following vulnerability has been resolved:
blk-mq: fix possible memleak when register 'hctx' failed
There's issue as follow
In the Linux kernel, the following vulnerability has been resolved:
blk-mq: fix possible memleak when register 'hctx' failed
There's issue as follows when do fault injection test:
unreferenced object 0xffff888132a9f400 (size 512):
comm "insmod", pid 308021, jiffies 4324277909 (age 509.733s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 08 f4 a9 32 81 88 ff ff ...........2....
08 f4 a9 32 81 88 ff ff 00 00 00 00 00 00 00 00 ...2............
backtrace:
[] kmalloc_node_trace+0x22/0xa0
[] blk_mq_alloc_and_init_hctx+0x3f1/0x7e0
[] blk_mq_realloc_hw_ctxs+0x1e6/0x230
[] blk_mq_init_allocated_queue+0x27e/0x910
[] __blk_mq_alloc_disk+0x67/0xf0
[] 0xffffffffa2ad310f
[] 0xffffffffa2af824a
[] do_one_initcall+0x87/0x2a0
[] do_init_module+0xdf/0x320
[] load_module+0x3006/0x3390
[] __do_sys_finit_
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/02bc8bc6eab03c84373281b85cb6e98747172ff7https://git.kernel.org/stable/c/33e8a3f61814ea30615d0fafaf50477975d6c1cahttps://git.kernel.org/stable/c/4b7a21c57b14fbcd0e1729150189e5933f5088e9https://git.kernel.org/stable/c/4b7fafa5f39b15c3a6ca3b95e534d05d6904cc95https://git.kernel.org/stable/c/654870789c3c1b9763316ef1c71d7a449127b175https://git.kernel.org/stable/c/87fd18016a47ea8ae12641377a390172c4aa97a7https://git.kernel.org/stable/c/cb186eb47fb9dd327bdefa15f0c5fc55c53a40ddhttps://git.kernel.org/stable/c/e8022da1fa2fdf2fa204b445dd3354e7a66d085ahttps://git.kernel.org/stable/c/eff45bfbc25a2509a6362dea6e699e14083c693c
2025-10-01
Published