vulnerability
Ubuntu: (CVE-2022-50098): linux vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:S/C:N/I:N/A:C) | Jun 18, 2025 | Jun 26, 2025 | Nov 20, 2025 |
Description
In the Linux kernel, the following vulnerability has been resolved:
scsi: qla2xxx: Fix crash due to stale SRB access around I/O timeouts
Ensure SRB is returned during I/O timeout error escalation. If that is not
possible fail the escalation path.
Following crash stack was seen:
BUG: unable to handle kernel paging request at 0000002f56aa90f8
IP: qla_chk_edif_rx_sa_delete_pending+0x14/0x30 [qla2xxx]
Call Trace:
? qla2x00_status_entry+0x19f/0x1c50 [qla2xxx]
? qla2x00_start_sp+0x116/0x1170 [qla2xxx]
? dma_pool_alloc+0x1d6/0x210
? mempool_alloc+0x54/0x130
? qla24xx_process_response_queue+0x548/0x12b0 [qla2xxx]
? qla_do_work+0x2d/0x40 [qla2xxx]
? process_one_work+0x14c/0x390
Solutions
References
- CVE-2022-50098
- https://attackerkb.com/topics/CVE-2022-50098
- URL-https://git.kernel.org/stable/c/7dcd49c42b14717dd668fd73b503d241fdf82439
- URL-https://git.kernel.org/stable/c/b70553175d0f94ebd73670bc16ade90bd7f7d76f
- URL-https://git.kernel.org/stable/c/b7bae3886a30d258b5b4fee26647043d68da3661
- URL-https://git.kernel.org/stable/c/c39587bc0abaf16593f7abcdf8aeec3c038c7d52
- URL-https://www.cve.org/CVERecord?id=CVE-2022-50098
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.