PT-2025-40730 · Linux+3 · Linux Kernel+3

Published

2022-11-30

·

Updated

2025-12-04

·

CVE-2022-50496

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free (UAF) issue was identified and resolved in the dm cache functionality of the Linux kernel. This problem occurs when dm resume() and dm destroy() are executed concurrently. The fix involves cancelling a timer again within the destroy() function.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Use After Free

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2026-02270
CESA-2023_2951
CVE-2022-50496
RHSA-2023:2458
RHSA-2023:2951
RHSA-2023_2458
RHSA-2023_2951
SUSE-SU-2025:4111-1
SUSE-SU-2025:4135-1
SUSE-SU-2025:4139-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4188-1
SUSE-SU-2025:4189-1
SUSE-SU-2025:4320-1

Affected Products

Centos
Linux Kernel
Red Hat
Suse