CVE-2022-50671Access of Uninitialized Pointer in Linux

Severity
4.7MEDIUM
No vector
EPSS
0.1%
top 80.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 9

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix "kernel NULL pointer dereference" error When rxe_queue_init in the function rxe_qp_init_req fails, both qp->req.task.func and qp->req.task.arg are not initialized. Because of creation of qp fails, the function rxe_create_qp will call rxe_qp_do_cleanup to handle allocated resource. Before calling __rxe_do_task, both qp->req.task.func and qp->req.task.arg should be checked.

Affected Packages4 packages

Linuxlinux/linux_kernel4.8.04.9.331+7
Debianlinux/linux_kernel< 5.10.158-1+3
CVEListV5linux/linux8700e3e7c4857d28ebaa824509934556da0b3e7648cd7098e71735ccafa0b3cf27c53924f9cb5b2f+9
debiandebian/linux< linux 6.0.3-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2022-50671: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix "kernel NULL pointer dereference" error When rxe_queue_init in the f2025-12-09
OSV
RDMA/rxe: Fix "kernel NULL pointer dereference" error2025-12-09
GHSA
GHSA-9v66-cvmj-6924: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix "kernel NULL pointer dereference" error When rxe_queue_init in the2025-12-09

📋Vendor Advisories

2
Red Hat
kernel: RDMA/rxe: Fix "kernel NULL pointer dereference" error2025-12-09
Debian
CVE-2022-50671: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: F...2022