CVE-2022-50085

HIGH

Linux Kernel 4.8-5.19.2 - Memory Corruption in RAID Resume

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: dm raid: fix address sanitizer warning in raid_resume There is a KASAN warning in raid_resume when running the lvm test lvconvert-raid.sh. The reason for the warning is that mddev->raid_disks is greater than rs->raid_disks, so the loop touches one entry beyond the allocated length.

Scores

CVSS v3 7.8
EPSS 0.0017
EPSS Percentile 6.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (26)
linux/Kernel 4.15.0 - 4.19.256linux
linux/Kernel 4.20.0 - 5.4.211linux
linux/Kernel 4.8.0 - 4.14.291linux
linux/Kernel 5.11.0 - 5.15.61linux
linux/Kernel 5.16.0 - 5.18.18linux
linux/Kernel 5.19.0 - 5.19.2linux
linux/Kernel 5.5.0 - 5.10.137linux
Linux/Linux < 4.8
Linux/Linux 33e53f06850f44ec9722e08a993ecf8816e447a5 - 2a9faa704d83ff0b04387e385efd8ae21cd95af6
Linux/Linux 33e53f06850f44ec9722e08a993ecf8816e447a5 - 3bfdc95466f5be4d8d95db5a5b470d61641a7c24
... and 16 more
Published Jun 18, 2025
Tracked Since Feb 18, 2026