PT-2025-38329 · Linux+4 · Linux Kernel+4

Published

2023-05-09

·

Updated

2025-12-01

·

CVE-2022-50381

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.1.0-rc3
Description A crash in the mempool free function within the Linux kernel's md (Multiple Devices) subsystem was resolved. The crash occurred during the execution of the lvm test shell/lvchange-rebuild-raid.sh. The root cause was a race condition between the super written function and bio operations, leading to an attempt to free memory into a destroyed bio set. The fix involves reordering operations to ensure bio put is called before decrementing the number of in-progress bios in both md end flush and super written.
Recommendations Update to a version later than 6.1.0-rc3 to resolve this issue.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2026-06027
CESA-2023_2951
CVE-2022-50381
RHSA-2023:2458
RHSA-2023:2951
RHSA-2023_2458
RHSA-2023_2951
SUSE-SU-2025:03613-1
SUSE-SU-2025:03614-1
SUSE-SU-2025:03615-1
SUSE-SU-2025:03626-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:3761-1
SUSE-SU-2025:4315-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Suse