Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50171

17
FAUCET Score

CVE-2022-50171 is a vulnerability in the Linux kernel's Hisilicon Kunpeng920 encryption driver. It arises when the driver attempts to use a mutex lock during a softirq, which is an atomic context where sleeping is prohibited, leading to a kernel bug and system instability. This vulnerability affects the Linux kernel. Rated as Medium severity (CVSS 5.5), the vulnerability has a local attack vector and low attack complexity, requiring local user privileges. A successful exploit could lead to a denial of service (system crash) due to the kernel bug, but does not impact confidentiality or integrity. There is currently no evidence of active exploitation, nor are there known public exploit codes available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, indicating low public attention.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.5, < 5.10.137CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.61CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 5.18.18CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.19, < 5.19.2CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.13%
Probability of exploitation in next 30 days
EPSS Percentile
3.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0013 is in the 20th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2022-50171

kernel: crypto: hisilicon/sec - don't sleep when in softirq

Jun 18, 2025

References

git.kernel.org / stable/c/02884a4f12de11f54d4ca67a07dd1f111d96fdbd
Patch
git.kernel.org / stable/c/16e18a8ac7c9748cf35a8d2f0ba2c6e8850e7568
Patch
git.kernel.org / stable/c/4a461ba5b9753352f438824fdd915cba675b1733
Patch
git.kernel.org / stable/c/aa495dfe71229b9034b59d8072ff0b2325ddd5ee
Patch
git.kernel.org / stable/c/c9be45e4c69fde36522274f04d1aa0d097ae3958
Patch