CVE-2022-50843Signal Handler Race Condition in Linux

Severity
4.7MEDIUM
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: dm clone: Fix UAF in clone_dtr() Dm_clone also has the same UAF problem when dm_resume() and dm_destroy() are concurrent. Therefore, cancelling timer again in clone_dtr().

Affected Packages4 packages

Linuxlinux/linux_kernel5.4.05.4.229+4
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux7431b7835f554f8608b415a02cf3c3f086309e02520b56cfd9faee7683f081c3a38f11a81b13a68e+6
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-f4xq-gq7q-8jfg: In the Linux kernel, the following vulnerability has been resolved: dm clone: Fix UAF in clone_dtr() Dm_clone also has the same UAF problem when dm_2025-12-30
OSV
dm clone: Fix UAF in clone_dtr()2025-12-30
OSV
CVE-2022-50843: In the Linux kernel, the following vulnerability has been resolved: dm clone: Fix UAF in clone_dtr() Dm_clone also has the same UAF problem when dm_re2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: dm clone: Fix UAF in clone_dtr()2025-12-30
Debian
CVE-2022-50843: linux - In the Linux kernel, the following vulnerability has been resolved: dm clone: F...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50843 Impact, Exploitability, and Mitigation Steps | Wiz