PT-2025-25957 · Linux+2 · Linux Kernel+2

Published

2025-06-18

·

Updated

2026-04-20

·

CVE-2022-50031

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use after free issue has been identified in the Linux kernel, specifically in the scsi: iscsi component. This occurs when the qla4xxx does not remove the connection before the session, and the iSCSI class attempts to remove the connection. The issue arises from an unnecessary iscsi put conn() call in the iter function, which results in a use after free because iscsi remove conn() frees the connection.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2022-50031
SUSE-SU-2025:02264-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02537-1

Affected Products

Debian
Linux Kernel
Suse