PT-2025-25932 · Linux+3 · Linux Kernel+3

Published

2022-08-19

·

Updated

2025-07-28

·

CVE-2022-50006

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue concerns the Linux kernel's handling of NFSv4.2, specifically with the nfs42 ssc open function. A problem arises when a destination server performs a COPY operation and accepts a filehandle that is not a regular filehandle. Additionally, there is an issue with alloc file pseudo() failing to decrement a reference on a newly created inode, leading to a leak.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03377
CVE-2022-50006
RHSA-2023:2458
RHSA-2023_2458
SUSE-SU-2025:02264-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02537-1

Affected Products

Astra Linux
Linux Kernel
Red Hat
Suse