CVE-2022-50728Function Call with Incorrectly Specified Arguments in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 84.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: s390/lcs: Fix return type of lcs_start_xmit() With clang's kernel control flow integrity (kCFI, CONFIG_CFI_CLANG), indirect call targets are validated against the expected function pointer prototype to make sure the call target is valid to help mitigate ROP attacks. If they are not identical, there is a failure at run time, which manifests as either a kernel panic or thread getting killed. A proposed warning in clang aims to c

Affected Packages4 packages

Linuxlinux/linux_kernel2.6.324.9.337+7
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linuxdc1f8bf68b311b1537cb65893430b6796118498a7b4da3fcd513b8e67823eb80da37aad99b3339c1+9
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
OSV
s390/lcs: Fix return type of lcs_start_xmit()2025-12-24
OSV
CVE-2022-50728: In the Linux kernel, the following vulnerability has been resolved: s390/lcs: Fix return type of lcs_start_xmit() With clang's kernel control flow int2025-12-24
GHSA
GHSA-fq4q-h53f-3wjv: In the Linux kernel, the following vulnerability has been resolved: s390/lcs: Fix return type of lcs_start_xmit() With clang's kernel control flow i2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Denial of Service in s390/lcs network driver due to incompatible function pointer type2025-12-24
Debian
CVE-2022-50728: linux - In the Linux kernel, the following vulnerability has been resolved: s390/lcs: F...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50728 Impact, Exploitability, and Mitigation Steps | Wiz