CVE-2022-50885NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed There is a null-ptr-deref when mount.cifs over rdma: BUG: KASAN: null-ptr-deref in rxe_qp_do_cleanup+0x2f3/0x360 [rdma_rxe] Read of size 8 at addr 0000000000000018 by task mount.cifs/3046 CPU: 2 PID: 3046 Comm: mount.cifs Not tainted 6.1.0-rc5+ #62 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.14.0-1.fc3 Call Trace: dump_stack_lvl+

Affected Packages4 packages

Linuxlinux/linux_kernel4.8.04.14.303+6
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux8700e3e7c4857d28ebaa824509934556da0b3e76ee24de095569935eba600f7735e8e8ddea5b418e+8
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2022-50885: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed Ther2025-12-30
OSV
RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed2025-12-30
GHSA
GHSA-j956-q5gg-h432: In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed Th2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: Denial of Service in RDMA/rxe due to null-pointer dereference2025-12-30
Debian
CVE-2022-50885: linux - In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: F...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50885 Impact, Exploitability, and Mitigation Steps | Wiz