cbcvebase.
CVE-2022-50496
published 2025-10-04

CVE-2022-50496: In the Linux kernel, the following vulnerability has been resolved: dm cache: Fix UAF in destroy() Dm_cache also has the same UAF problem when dm_resume() and…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.16%
5.4th percentile
In the Linux kernel, the following vulnerability has been resolved: dm cache: Fix UAF in destroy() Dm_cache also has the same UAF problem when dm_resume() and dm_destroy() are concurrent. Therefore, cancelling timer again in destroy().

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 034cbc8d3b47a56acd89453c29632a9c117de09d034cbc8d3b47a56acd89453c29632a9c117de09d
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 993406104d2b28fe470126a062ad37a1e21e792e993406104d2b28fe470126a062ad37a1e21e792e
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 4d20032dd90664de09f2902a7ea49ae2f77717464d20032dd90664de09f2902a7ea49ae2f7771746
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 2f097dfac7579fd84ff98eb1d3acd41d53a485f32f097dfac7579fd84ff98eb1d3acd41d53a485f3
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 2b17026685a270b2beaf1cdd9857fcedd3505c7e2b17026685a270b2beaf1cdd9857fcedd3505c7e
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < d2a0b298ebf83ab6236f66788a3541e91ce75a70d2a0b298ebf83ab6236f66788a3541e91ce75a70
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 6ac4f36910764cb510bafc4c3768544f86ca48ca6ac4f36910764cb510bafc4c3768544f86ca48ca
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 6a3e412c2ab131c54945327a7676b006f000a2096a3e412c2ab131c54945327a7676b006f000a209
linuxlinux>= c6b4fcbad044e6fffcc75bba160e720eb8d67d17 < 6a459d8edbdbe7b24db42a5a9f21e6aa9e00c2aa6a459d8edbdbe7b24db42a5a9f21e6aa9e00c2aa
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 3.9 < 4.9.3374.9.337
linuxlinux_kernel>= 4.10 < 4.14.3034.14.303
linuxlinux_kernel>= 4.15 < 4.19.2704.19.270
linuxlinux_kernel>= 4.20 < 5.4.2295.4.229
linuxlinux_kernel>= 5.11 < 5.15.875.15.87
linuxlinux_kernel>= 5.16 < 6.0.186.0.18
linuxlinux_kernel>= 5.5 < 5.10.1635.10.163
linuxlinux_kernel>= 6.1 < 6.1.46.1.4

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.