PT-2025-26062 · Linux+4 · Linux Kernel+4

Published

2022-07-14

·

Updated

2025-07-28

·

CVE-2022-50136

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the RDMA/siw component. The issue occurs when the siw recv mpa rr function returns -EAGAIN, indicating that the MPA reply has not been received completely, and yet the IW CM EVENT CONNECT REPLY event is reported. This can trigger a call trace in iw cm. The vulnerability can be triggered using the ib send lat command on both the server and client sides. The call trace may appear as a kernel bug, with an invalid opcode and a call trace involving the cm work handler and process one work functions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03255
CESA-2023_2951
CVE-2022-50136
RHSA-2023:2458
RHSA-2023:2951
RHSA-2023_2458
RHSA-2023_2951
SUSE-SU-2025:02264-1
SUSE-SU-2025:02308-1
SUSE-SU-2025:02320-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02308-1
SUSE-SU-2025_02537-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Suse