PT-2025-38333 · Linux+4 · Linux Kernel+4

Published

2023-05-09

·

Updated

2025-10-23

·

CVE-2022-50385

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains an issue in the NFS implementation where an Oops may occur in the nfs d automount() function when mounting from an NFSv4 referral. This happens because path->dentry can become a negative dentry, leading to an attempt to derive the nfs server structure from the dentry itself.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2026-06028
CESA-2023_7077
CVE-2022-50385
RHSA-2023:2458
RHSA-2023:7077
RHSA-2023_2458
RHSA-2023_7077
SUSE-SU-2025:03613-1
SUSE-SU-2025:03614-1
SUSE-SU-2025:03615-1
SUSE-SU-2025:03626-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:3761-1

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Suse