Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50640

11
FAUCET Score

CVE-2022-50640 addresses a kernel panic vulnerability in the Linux kernel's multimedia card (MMC) core. This issue arises when a non-standard SDIO card is removed, leading to memory corruption due to an improperly managed reference counter. While no specific affected products are listed, it impacts systems running vulnerable Linux kernel versions. The vulnerability's severity is not formally rated with a CVSS score, but its potential to cause a kernel panic indicates a denial-of-service impact. The attack vector would likely involve physical access or a compromised system to insert and remove a specially crafted non-standard SDIO card. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE. Its EPSS score is very low, suggesting a minimal likelihood of exploitation in the wild.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
2.6.36CNA affecteddefault affected
LinuxLinux
>= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < 1e8cd93ae536581562bab4e1d8c5315bbc2548bf, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < 1fb79478695d92bab1c120ad3dad05252b02a29d, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < 66d461a92f32b6995b630625d350259b6b1f961b, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < 7a09c64b7da0abdec3919812e3d93ecc44069ed0, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < 8bf037279b5869ae9331c42bb1527d2680ebba96, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < 9972e6b404884adae9eec7463e30d9b3c9a70b18, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < b3275dde570b6420106a715bb58a0af041b94d95, >= 6f51be3d37dff73cf8db771df4169f4c2f1cbf66, < b8b2965932e702b21e335ff30e1bb550f5a23b6fCNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.19%
Probability of exploitation in next 30 days
EPSS Percentile
8.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Patch Available

Vendor Patches (6)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-503.11.1.el9_5
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-50640Moderate

kernel: mmc: core: Fix kernel panic when remove non-standard SDIO card

Dec 9, 2025

References

git.kernel.org / stable/c/1e8cd93ae536581562bab4e1d8c5315bbc2548bf
git.kernel.org / stable/c/1fb79478695d92bab1c120ad3dad05252b02a29d
git.kernel.org / stable/c/66d461a92f32b6995b630625d350259b6b1f961b
git.kernel.org / stable/c/7a09c64b7da0abdec3919812e3d93ecc44069ed0
git.kernel.org / stable/c/8bf037279b5869ae9331c42bb1527d2680ebba96
git.kernel.org / stable/c/9972e6b404884adae9eec7463e30d9b3c9a70b18
git.kernel.org / stable/c/b3275dde570b6420106a715bb58a0af041b94d95
git.kernel.org / stable/c/b8b2965932e702b21e335ff30e1bb550f5a23b6f