Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50865

12
FAUCET Score

CVE-2022-50865 is a signed-integer-overflow vulnerability in the Linux kernel's tcp_add_backlog() function. This flaw arises when calculating a buffer limit, where the sum of sk_rcvbuf, sk_sndbuf, and a fixed value can exceed the maximum integer value, leading to an overflow. The fix addresses this by reducing the limit budget. While a CVSS score is not provided, the FAUCET Risk Score is 7/100, indicating a low severity. The vulnerability's complexity and potential impact are not detailed, but it likely affects the stability or performance of TCP connections rather than direct remote code execution. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE. This suggests a low current threat landscape for this specific vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
4.9CNA affecteddefault affected
LinuxLinux
>= c9c3321257e1b95be9b375f811fb250162af8d39, < 28addf029417d53b1df062b4c87feb7bc033cb5f, >= c9c3321257e1b95be9b375f811fb250162af8d39, < 4f23cb2be530785db284a685d1b1c30224d8a538, >= c9c3321257e1b95be9b375f811fb250162af8d39, < 9d04b4d0feee12bce6bfe37f30d8e953d3c30368, >= c9c3321257e1b95be9b375f811fb250162af8d39, < a85d39f14aa8a71e29cfb5eb5de02878a8779898, >= c9c3321257e1b95be9b375f811fb250162af8d39, < ec791d8149ff60c40ad2074af3b92a39c916a03fCNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.17%
Probability of exploitation in next 30 days
EPSS Percentile
6.4%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Patch Available

Vendor Patches (14)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt-0:4.18.0-553.100.1.rt7.441.el8_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-553.100.1.el8_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportFixed in: kernel-0:4.18.0-305.186.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-OnFixed in: kernel-0:4.18.0-305.186.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportFixed in: kernel-0:4.18.0-372.179.1.el8_6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Telecommunications Update ServiceFixed in: kernel-0:4.18.0-372.179.1.el8_6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionsFixed in: kernel-0:4.18.0-372.179.1.el8_6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.8 Telecommunications Update ServiceFixed in: kernel-0:4.18.0-477.130.1.el8_8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.8 Update Services for SAP SolutionsFixed in: kernel-0:4.18.0-477.130.1.el8_8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-362.8.1.el9_3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsFixed in: kernel-0:5.14.0-70.165.1.el9_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsFixed in: kernel-rt-0:5.14.0-70.165.1.rt21.237.el9_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Update Services for SAP SolutionsFixed in: kernel-0:5.14.0-284.155.1.el9_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Update Services for SAP SolutionsFixed in: kernel-rt-0:5.14.0-284.155.1.rt14.440.el9_2
View patch

Vendor Advisories (1)

redhatCVE-2022-50865Moderate

kernel: tcp: fix a signed-integer-overflow bug in tcp_add_backlog()

Dec 30, 2025

References

git.kernel.org / stable/c/28addf029417d53b1df062b4c87feb7bc033cb5f
git.kernel.org / stable/c/4f23cb2be530785db284a685d1b1c30224d8a538
git.kernel.org / stable/c/9d04b4d0feee12bce6bfe37f30d8e953d3c30368
git.kernel.org / stable/c/a85d39f14aa8a71e29cfb5eb5de02878a8779898
git.kernel.org / stable/c/ec791d8149ff60c40ad2074af3b92a39c916a03f