PT-2025-25929 · Linux+7 · Linux Kernel+7

Published

2022-08-22

·

Updated

2025-07-15

·

CVE-2022-50003

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.19.0-rc7+
Description A vulnerability in the Linux kernel has been resolved, related to the ice driver's XSK logic. The issue occurs when a user attempts to attach an XSK socket in tx-only mode at a queue id that does not have a corresponding Rx queue. This results in an out-of-bounds access to the Rx ring array. The vulnerability can be triggered by running specific commands, such as ethtool -L $IFACE rx 8 tx 96 and xdpsock -q 10 -t -z. The estimated number of potentially affected devices is not provided.
Recommendations For Linux kernel versions prior to 5.19.0-rc7+, consider disabling the ice xsk pool setup function as a temporary workaround until a patch is available. Restrict access to the vulnerable xdpsock module to minimize the risk of exploitation. Avoid using the ethtool command with the -L option to configure queue settings until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02574
CESA-2023_7077
CVE-2022-50003
RHSA-2023:2458
RHSA-2023:7077
RHSA-2023_2458
RHSA-2023_7077
SUSE-SU-2025:02264-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Suse
Ethtool
Iedriver
Xdpsock