NFSv4.1 Vulnerability in Linux Kernel Affecting Various Systems
CVE-2022-50401

7.8HIGH

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
18 September 2025

What is CVE-2022-50401?

A vulnerability in the Linux kernel's NFSv4.1 implementation leads to a potential use-after-free condition during rpc_create failures. This occurs when a reference to a service transport is incorrectly managed, delaying cleanup processes that should happen in error states. The issue may result in improper memory access, potentially destabilizing the system or leading to broader security risks. Patching is crucial to ensure the integrity and security of systems using affected kernel versions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 69151594c72a1748cf93ae5b5fa68d5084253dce < 707bcca9616002d204091ca7c4d1d91151104332

Linux 0c4fb76c4e711d9e4e70ddc6732310a17076175d < 15fc60aa5bdcf6d5f93000d3d00579fc67632ee0

Linux 22c721560ef24003bcb9c3d9c358841dcfa4e212 < 9b4ae8c42d2ff09ed7c5832ccce5684c55e5ed23

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.