CVE-2022-50235
critical · 9.8In the Linux kernel, the following vulnerability has been resolved: NFSD: Protect against send buffer overflow in NFSv2 READDIR Restore the previous limit on the @count argument to prevent a buffer overflow attack.
9.8
CVSS
0.4%
EPSS (exploit prob.)
36th
EPSS percentile
2025-09-15
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| linux | linux_kernel | >= 5.15.12, < 5.15.75 |
| linux | linux_kernel | >= 5.16.1, < 5.19.17 |
| linux | linux_kernel | >= 6.0, < 6.0.3 |
| linux | linux_kernel | 5.16 |
| linux | linux_kernel | 5.16 |
| linux | linux_kernel | 5.16 |
Check a specific version with /api/v1/cve/match.
References
- https://git.kernel.org/stable/c/00b4492686e0497fdb924a9d4c8f6f99377e176c
- https://git.kernel.org/stable/c/0e57d696f60dee6117a8ace0cac7c5761d375277
- https://git.kernel.org/stable/c/c2a878095b5c6f04f90553a3c45872f990dab14e
- https://git.kernel.org/stable/c/dc7f225090c29a5f3b9419b1af32846a201555e7
- https://git.kernel.org/stable/c/f59c74df82f6ac9d2ea4e01aa3ae7c6c4481652d
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2022-50235