PT-2025-25973 · Linux+2 · Linux Kernel+2

Published

2022-08-12

·

Updated

2025-07-28

·

CVE-2022-50047

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, which prevented a crash on an unused port. The issue occurred when the port was neither a CPU port nor a user port, resulting in a null pointer dereference in the mv88e6060 setup port() function. This caused a kernel crash, as indicated by the error message "Unable to handle kernel NULL pointer dereference at virtual address 00000014". The vulnerability is related to the dsa register switch() function, which calls mv88e6060 setup().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02664
CVE-2022-50047
SUSE-SU-2025:02264-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02537-1

Affected Products

Astra Linux
Linux Kernel
Suse