Review reviewHigh

CVE-2022-50885

Linux

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed There is a null-ptr-deref when mount.cifs over rdma: BUG: KASAN: null-ptr-deref in rxe_qp_do_cleanup+0x2f3/0x360 [rdma_rxe] Read of size 8 at addr 0000000000000018 by task mount.cifs/3046 CPU: 2 PID: 3046 Comm: mount.cifs Not tainted 6.1.0-rc5+ #62 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.14.0-1.fc3 Call Trace: <TASK> dump_stack_lvl+0x34/0x44 kasan_report+0xad/0x130 rxe_qp_do_cleanup+0x2f3/0x360 [rdma_rxe] execute_in_process_c...

CVSS
7.5
EPSS
0.52%
41.3% percentile
CISA KEV
Not listed
Published
2025.12.30
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.52%
Technical severityCVSS 7.5

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix NULL-ptr-deref in rxe_qp_do_cleanup() when socket create failed There is a null-ptr-deref when mount.cifs over rdma: BUG: KASAN: null-ptr-deref in rxe_qp_do_cleanup+0x2f3/0x360 [rdma_rxe] Read of size 8 at addr 0000000000000018 by task mount.cifs/3046 CPU: 2 PID: 3046 Comm: mount.cifs Not tainted 6.1.0-rc5+ #62 Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.14.0-1.fc3 Call Trace: <TASK> dump_stack_lvl+0x34/0x44 kasan_report+0xad/0x130 rxe_qp_do_cleanup+0x2f3/0x360 [rdma_rxe] execute_in_process_c...

Affected product and versions

Product
Linux
Affected versions
>= 8700e3e7c4857d28ebaa824509934556da0b3e76 < ee24de095569935eba600f7735e8e8ddea5b418e, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < 7340ca9f782be6fbe3f64a134dc112772764f766, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < bd7106a6004f1077a365ca7f5a99c7a708e20714, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < 6bb5a62bfd624039b05157745c234068508393a9, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < f64f08b9e6fb305a25dd75329e06ae342b9ce336, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < 5b924632d84a60bc0c7fe6e9bbbce99d03908957, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < 821f9a18210f6b9fd6792471714c799607b25db4, >= 8700e3e7c4857d28ebaa824509934556da0b3e76 < f67376d801499f4fa0838c18c1efcad8840e550d, >= 4.8
Fixed versions
No verified fixed-version field is available yet

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE
Not available
CVE-2022-50885 — Linux | SECUFOCUS NOW