PT-2025-37597 · Linux+2 · Linux Kernel+2

Published

2022-10-19

·

Updated

2025-09-20

·

CVE-2022-50295

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.1.0-rc1 #28
Description The Linux kernel contains a vulnerability in the io uring/msg ring component. A NULL pointer dereference exists in the io msg send fd() function when file ptr is NULL, leading to a crash. This issue was discovered through Syzkaller testing.
Recommendations Update to a version of the Linux kernel newer than 6.1.0-rc1 #28.

Exploit

Fix

Improper Resource Release

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2026-06077
CVE-2022-50295
RHSA-2023:6583
RHSA-2023_6583

Affected Products

Astra Linux
Linux Kernel
Red Hat