CVE-2022-50870 addresses a vulnerability in the Linux kernel's powerpc/rtas component. During a kernel panic, the rtas_os_term() function could potentially cause a system hang if the devtree_lock was held, due to its reliance on device tree lookups. This issue has been resolved by caching necessary device tree characteristics at boot time, avoiding dynamic lookups during panic. While no CVSS score is provided, the FAUCET Risk Score is 7/100, indicating a low severity. The attack vector is internal to the kernel's panic handling, suggesting high complexity for exploitation and a potential impact of system instability or denial of service during a panic event. There is no evidence of active exploitation, exploit code availability, or significant community discussion surrounding this CVE. It is not listed in the KEV catalog or Hot List, and there is no media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 2.6.16CNA affecteddefault affected | |
| Linux | Linux | >= 088186ded490ced80758200cf8f906ed741df306, < 06a07fbb32b3a23eec20a42b1e64474da0a3b33e, >= 088186ded490ced80758200cf8f906ed741df306, < 464d10e8d797454e16a173ef1292a446b2adf21c, >= 088186ded490ced80758200cf8f906ed741df306, < 698e682c849e356fb47a8be47ca8baa817cf31e0, >= 088186ded490ced80758200cf8f906ed741df306, < c2fa91abf22a705cf02f886cd99cff41f4ceda60, >= 088186ded490ced80758200cf8f906ed741df306, < d8939315b7342860df143afe0adda6212cdd3193, >= 088186ded490ced80758200cf8f906ed741df306, < e23822c7381c59d9e42e65771b6e17c71ed30ea7, >= 088186ded490ced80758200cf8f906ed741df306, < ed2213bfb192ab51f09f12e9b49b5d482c6493f3, >= 088186ded490ced80758200cf8f906ed741df306, < f2167f10fcca68ab9ae3f8d94d2c704c5541ac69CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.