SB2025102368 - Improper Initialization in Linux kernel s390 net driver
Published: October 23, 2025 Updated: October 26, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper Initialization (CVE-ID: CVE-2022-50564)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper initialization within the netiucv_close() function in drivers/s390/net/netiucv.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/3ac0217ca9186c2f9af9a0113a331a42aa847894
- https://git.kernel.org/stable/c/4bee3c75d5bf7c2b5dc0b520410eb40449e5da31
- https://git.kernel.org/stable/c/85d392710275355425df8618ccbebbc336f5acc5
- https://git.kernel.org/stable/c/88d86d18d7cf7e9137c95f9d212bb9fff8a1b4be
- https://git.kernel.org/stable/c/d034fa43af92fc46a81d882f46d9cc3e4ffdbbcc
- https://git.kernel.org/stable/c/dfbf0122ea1b9b3e73fa22c8ff6bd888935c54fc
- https://git.kernel.org/stable/c/e7a849f740e3576e79cba403697e916f4c3a6f12
- https://git.kernel.org/stable/c/eccc88c0efe407e579291792ad07a7dedc0f63f0
- https://git.kernel.org/stable/c/f13d870fce90f01cf930bfaffecc8185ae0be21c
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.337