Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50344

20
FAUCET Score

CVE-2022-50344 is a null-pointer dereference vulnerability in the Linux kernel's ext4 filesystem, specifically within the ext4_write_info function. This flaw can be triggered during filesystem unmounting operations, affecting Linux systems utilizing the ext4 filesystem. Rated as Medium severity with a CVSS score of 5.5, the vulnerability requires local access and low privileges (AV:L/PR:L) to exploit. A successful exploit could lead to a denial-of-service (DoS) condition (A:H) due to system instability or crashes. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this CVE. It is not listed on the CISA KEV catalog.

Impacted Technologies

VendorProductVersion(s)CPE
< 4.9.331CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.10, < 4.14.296CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.15, < 4.19.262CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.220CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.150CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.15%
Probability of exploitation in next 30 days
EPSS Percentile
4.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0015 is in the 29th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (6)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-553.el8_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-284.11.1.el9_2
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-50344Moderate

kernel: ext4: fix null-ptr-deref in ext4_write_info

Sep 16, 2025

References

git.kernel.org / stable/c/3638aa1c7d87c0ca0aef23cf58cae2c48e7daca4
Patch
git.kernel.org / stable/c/4a657319cfabd6199fd0b7b65bbebf6ded7a11c1
Patch
git.kernel.org / stable/c/533c60a0b97cee5daab376933f486207e6680fb7
Patch
git.kernel.org / stable/c/947264e00c46de19a016fd81218118c708fed2f3
Patch
git.kernel.org / stable/c/bb420e8afc854d2a1caaa23a0c129839acfb7888
Patch
git.kernel.org / stable/c/dc451578446afd03c0c21913993c08898a691435
Patch
git.kernel.org / stable/c/f34ab95162763cd7352f46df169296eec28b688d
Patch
git.kernel.org / stable/c/f4b5ff0b794aa94afac7269c494550ca2f66511b
Patch
git.kernel.org / stable/c/f9c1f248607d5546075d3f731e7607d5571f2b60
Patch