CVE-2022-50148

MEDIUM

Linux Kernel 5.17-5.18.17, 5.19.0-5.19.1 - NULL Pointer Dereference in kernfs_remove

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: kernfs: fix potential NULL dereference in __kernfs_remove When lockdep is enabled, lockdep_assert_held_write would cause potential NULL pointer dereference. Fix the following smatch warnings: fs/kernfs/dir.c:1353 __kernfs_remove() warn: variable dereferenced before check 'kn' (see line 1346)

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 4.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (11)
linux/Kernel 5.17.0 - 5.18.18linux
linux/Kernel 5.19.0 - 5.19.2linux
Linux/Linux < 5.17
Linux/Linux 393c3714081a53795bbff0e985d24146def6f57f - 4a9f35b8729c5bf13ea671c908c17ed74c48fc50
Linux/Linux 393c3714081a53795bbff0e985d24146def6f57f - 72b5d5aef246a0387cefa23121dd90901c7a691a
Linux/Linux 393c3714081a53795bbff0e985d24146def6f57f - b871986d9d3071f5082664ac274d93f08db257cd
Linux/Linux 5.17
Linux/Linux 5.18.18 - 5.18.*
Linux/Linux 5.19.2 - 5.19.*
Linux/Linux 6.0
... and 1 more
Published Jun 18, 2025
Tracked Since Feb 18, 2026