SB20251210127 - Improper locking in Linux kernel uio driver
Published: December 10, 2025 Updated: December 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper locking (CVE-ID: CVE-2022-50652)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper locking within the uio_dmem_genirq_irqcontrol() function in drivers/uio/uio_dmem_genirq.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/030b6c7bb1e4edebaee2b1e48fbcc9cd5998d51d
- https://git.kernel.org/stable/c/79a4bdb6b9920134af1a4738a1fa36a0438cd905
- https://git.kernel.org/stable/c/9977cb7af5a8f4738198b020436e2e56c5cd721e
- https://git.kernel.org/stable/c/9bf7a0b2b15cd12e15f7858072bd89933746de67
- https://git.kernel.org/stable/c/9de255c461d1b3f0242b3ad1450c3323a3e00b34
- https://git.kernel.org/stable/c/a323d24a0183be730d2398b11b3a91e5c2e222a0
- https://git.kernel.org/stable/c/ac5585bb06a2e82177269bee93e59887ce591106
- https://git.kernel.org/stable/c/eca77a25a7cb3201738f4b55b9b8fa1089d7d002
- https://git.kernel.org/stable/c/ee180e867ce4b2f744799247b81050b3e5dd62cd
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.2