CVE-2022-50502NULL Pointer Dereference in Azl3 Kernel 6.6.96.2-2 ON Azure Linux 3.0

Severity
5.5MEDIUM
No vector
EPSS
No EPSS data
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 4
Latest updateOct 14

Description

In the Linux kernel, the following vulnerability has been resolved: mm: /proc/pid/smaps_rollup: fix no vma's null-deref Commit 258f669e7e88 ("mm: /proc/pid/smaps_rollup: convert to single value seq_file") introduced a null-deref if there are no vma's in the task in show_smaps_rollup.

Affected Packages2 packages

🔴Vulnerability Details

2
OSV
CVE-2022-50502: In the Linux kernel, the following vulnerability has been resolved: mm: /proc/pid/smaps_rollup: fix no vma's null-deref Commit 258f669e7e88 ("mm: /pro2025-10-04
GHSA
GHSA-6cm9-9f47-98qc: In the Linux kernel, the following vulnerability has been resolved: mm: /proc/pid/smaps_rollup: fix no vma's null-deref Commit 258f669e7e88 ("mm: /p2025-10-04

📋Vendor Advisories

2
Microsoft
mm: /proc/pid/smaps_rollup: fix no vma's null-deref2025-10-14
Red Hat
kernel: mm: /proc/pid/smaps_rollup: fix no vma's null-deref2025-10-04

🕵️Threat Intelligence

1
Bleepingcomputer
Microsoft October 2025 Patch Tuesday fixes 6 zero-days, 172 flaws2025-10-14