Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50362

20
FAUCET Score

CVE-2022-50362 is a vulnerability in the Linux kernel's dmaengine hisilicon component, specifically affecting the handling of DMA channels. It arises when multiple threads attempt to use a single DMA channel, leading to a data race condition that can cause system crashes (Oops) and hangs. This issue is due to threads prematurely rewriting channel descriptors, causing the driver to use incorrect descriptors and resulting in transmission timeouts. The vulnerability is rated Medium severity with a CVSS score of 5.5. It has a local attack vector (AV:L) and low attack complexity (AC:L), requiring local user privileges (PR:L). The primary impact is high availability loss (A:H) due to system instability, with no impact on confidentiality or integrity. Currently, there is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. The vulnerability has also received minimal community discussion and media coverage, indicating a low level of public awareness or concern at this time.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.6, < 5.10.150CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.75CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 5.19.17CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.0, < 6.0.3CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
8.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0018 is in the 43rd percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2022-50362

kernel: dmaengine: hisilicon: Add multi-thread support for a DMA channel

Sep 17, 2025

References

git.kernel.org / stable/c/2cbb95883c990d0002a77e13d3278913ab26ad79
Patch
git.kernel.org / stable/c/7cb9b20941e1fb20d22d0a2f460a3d4fa417274c
Patch
git.kernel.org / stable/c/af12e209a9d559394d35875ba0e6c80407605888
Patch
git.kernel.org / stable/c/d4a8ec5cc7ff5d442bd49a44f26d74b2021ba4c8
Patch
git.kernel.org / stable/c/f4cee0b385cd0348e071d4d80c4c13cfe547c70d
Patch