CVE-2022-50712Missing Lock Check in Linux

CWE-414Missing Lock Check7 documents6 sources
Severity
3.3LOW
No vector
EPSS
0.0%
top 93.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: devlink: hold region lock when flushing snapshots Netdevsim triggers a splat on reload, when it destroys regions with snapshots pending: WARNING: CPU: 1 PID: 787 at net/core/devlink.c:6291 devlink_region_snapshot_del+0x12e/0x140 CPU: 1 PID: 787 Comm: devlink Not tainted 6.1.0-07460-g7ae9888d6e1c #580 RIP: 0010:devlink_region_snapshot_del+0x12e/0x140 Call Trace: devl_region_destroy+0x70/0x140 nsim_dev_reload_down+0x2f/0x60 [n

Affected Packages4 packages

Linuxlinux/linux_kernel6.0.06.0.16+1
Debianlinux/linux_kernel< 6.1.4-1+2
CVEListV5linux/linux2dec18ad826f52658f7781ee995d236cc449b67849383d4e59bb704341aaa1d51440ccce58270e61+3
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-ffp9-5f99-52w2: In the Linux kernel, the following vulnerability has been resolved: devlink: hold region lock when flushing snapshots Netdevsim triggers a splat on2025-12-24
OSV
CVE-2022-50712: In the Linux kernel, the following vulnerability has been resolved: devlink: hold region lock when flushing snapshots Netdevsim triggers a splat on re2025-12-24
OSV
devlink: hold region lock when flushing snapshots2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: devlink: hold region lock when flushing snapshots2025-12-24
Debian
CVE-2022-50712: linux - In the Linux kernel, the following vulnerability has been resolved: devlink: ho...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50712 Impact, Exploitability, and Mitigation Steps | Wiz