Race condition in Linux kernel - CVE-2022-50044

 

Race condition in Linux kernel - CVE-2022-50044

Published: June 20, 2025 / Updated: June 21, 2025


Vulnerability identifier: #VU111648
CSH Severity: Low
CVSS v4 BT: 5.9 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID: CVE-2022-50044
CWE-ID: CWE-362
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to a race condition within the qcom_mhi_qrtr_probe() function in net/qrtr/mhi.c. A local user can escalate privileges on the system.


Affected software

Linux kernel
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Micro
SUSE Linux Enterprise Live Patching
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
kernel-livepatch-5_14_21-150500_55_113-default-debuginfo
kernel-livepatch-SLE15-SP5_Update_28-debugsource
kernel-livepatch-5_14_21-150500_55_113-default
kernel (Red Hat package)
kernel-rt (Red Hat package)
kernel-default
kernel-default-debuginfo
kernel-default-debugsource
kernel-default-livepatch-devel
kernel-default-livepatch

How to mitigate CVE-2022-50044

Install update from vendor's repository.

Linux kernel - update to 5.15.63
kernel-livepatch-5_14_21-150500_55_113-default-debuginfo - update to 1-150500.11.3.1
kernel-livepatch-SLE15-SP5_Update_28-debugsource - update to 1-150500.11.3.1
kernel-livepatch-5_14_21-150500_55_113-default - update to 1-150500.11.3.1
kernel (Red Hat package) - update to 5.14.0-70.144.1.el9_0
kernel-rt (Red Hat package) - update to 5.14.0-70.144.1.rt21.216.el9_0
kernel-default - update to 5.14.21-150500.55.113.1
kernel-default-debuginfo - update to 5.14.21-150500.55.113.1
kernel-default-debugsource - update to 5.14.21-150500.55.113.1
kernel-default-livepatch-devel - update to 5.14.21-150500.55.113.1
kernel-default-livepatch - update to 5.14.21-150500.55.113.1

External References

Related Security Bulletins