CVE-2022-50752 is a Linux kernel vulnerability in the md/raid5 module, specifically within the raid5_read_one_chunk() function. It causes a double-free error (BUG: Object already free) when performing chunk-sized reads on disks with bad blocks. This issue arises from an unnecessary bio_put() call in the error handling path, leading to memory corruption. The vulnerability has no assigned CVSS score, but its FAUCET Risk Score is 7/100, indicating a low severity. The attack vector is internal to the kernel's RAID5 implementation, and its complexity is likely high as it requires specific disk conditions (bad blocks) and read operations to trigger. The potential impact is system instability or crashes due to memory corruption. There is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage are minimal, suggesting low awareness and attention for this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 5.14CNA affecteddefault affected | |
| Linux | Linux | >= c82aa1b76787c34fd02374e519b6f52cdeb2f54b, < 21a9c7354aa59e97e26ece5f0a609c8bfa43020d, >= c82aa1b76787c34fd02374e519b6f52cdeb2f54b, < 7a37c58ee72e1fadd22c4ee990cb74c2ca2280e7, >= c82aa1b76787c34fd02374e519b6f52cdeb2f54b, < c0fd5d4d8fd7b1a50306d7a23c720cf808f41fdf, >= c82aa1b76787c34fd02374e519b6f52cdeb2f54b, < c66a6f41e09ad386fd2cce22b9cded837bbbc704CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.