PT-2025-41043 · Linux · Linux Kernel

Published

2022-12-05

·

Updated

2025-10-17

·

CVE-2022-50538

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the Linux kernel where an error in the fake init() function was not properly handled. Specifically, a failure in root device register() was ignored, potentially leading to issues during unregistration of the vme root device upon exit. This could result in a general protection fault and a null-ptr-deref, as indicated by KASAN. The root cause involves a missing error check after calling root device register().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

BDU:2026-03814
CVE-2022-50538
OESA-2025-2468

Affected Products

Linux Kernel