PT-2025-37597 · Linux+2 · Linux Kernel+2
Published
2022-10-19
·
Updated
2025-09-20
·
CVE-2022-50295
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.1.0-rc1 #28
Description
The Linux kernel contains a vulnerability in the
io uring/msg ring component. A NULL pointer dereference exists in the io msg send fd() function when file ptr is NULL, leading to a crash. This issue was discovered through Syzkaller testing.Recommendations
Update to a version of the Linux kernel newer than 6.1.0-rc1 #28.
Exploit
Fix
Improper Resource Release
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Red Hat