PT-2025-41021 · Linux+4 · Linux Kernel+4

Published

2022-08-15

·

Updated

2026-03-14

·

CVE-2022-50516

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw within the Distributed Lock Manager (DLM) component. Specifically, an invalid dereference of sb lvbptr can occur when handling lock blocks on the stack, potentially leading to a kernel crash. The issue arises when sb lvbptr points to a dangling pointer while not using DLM LKF VALBLK. The fix involves adding a check for the DLM LKF VALBLK flag during the copying of the lvbptr array, ensuring that a non-null sb lvbptr value is always provided. This could potentially affect other DLM users depending on how they handle memory initialization and freeing of sb lvbptr.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
BDU:2025-12807
CESA-2023_2951
CVE-2022-50516
RHSA-2023:2458
RHSA-2023:2951
RHSA-2023_2458
RHSA-2023_2951
SUSE-SU-2025:4111-1
SUSE-SU-2025:4135-1
SUSE-SU-2025:4139-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4188-1
SUSE-SU-2025:4189-1
SUSE-SU-2025:4320-1

Affected Products

Centos
Debian
Linux Kernel
Red Hat
Suse