Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: kernfs: fix potential NULL dereference in __kernfs_remove When lockdep is enabled, lockdep_assert_held_write would cause potential NULL pointer dereference. Fix the following smatch warnings: fs/kernfs/dir.c:1353 __kernfs_remove() warn: variable dereferenced before check 'kn' (see line 1346)
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.17, < 5.18.18 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/4a9f35b8729c5bf13ea671c908c17ed74c48fc50Patch
- https://git.kernel.org/stable/c/72b5d5aef246a0387cefa23121dd90901c7a691aPatch
- https://git.kernel.org/stable/c/b871986d9d3071f5082664ac274d93f08db257cdPatch
FAQ
What is CVE-2022-50148?
CVE-2022-50148 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: kernfs: fix potential NULL dereference in __kernfs_remove When lockdep is enabled, lockdep_assert_held_write would cause potential...
How severe is CVE-2022-50148?
CVE-2022-50148 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-50148?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.