PT-2025-49471 · Linux+1 · Linux Kernel+1

Publicado

2025-12-08

·

Atualizado

2026-02-24

·

CVE-2022-50630

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a use-after-free issue within the hugetlb memory management subsystem, specifically in the hugetlb handle userfault function. The issue arises from dropping the vma lock and hugetlb fault mutex before handling a userfault and reacquiring them afterward. The reacquisition of the vma lock can lead to a use-after-free condition due to a race condition involving hugetlb fault, hugetlb no page, handle userfault, vm mmap pgoff, do mmap, mmap region, and munmap vma range. The vulnerability occurs when the vma lock is unlocked immediately after hugetlb handle userfault, creating a window where the memory it protects could be freed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2022-50630
RHSA-2023:6583
SUSE-SU-2026:0263-1
SUSE-SU-2026:0316-1
SUSE-SU-2026:0317-1
SUSE-SU-2026:0350-1
SUSE-SU-2026:0369-1
SUSE-SU-2026:0411-1
SUSE-SU-2026:0617-1

Produtos afetados

Linux Kernel
Red Hat