#VU120530 Reachable assertion in Linux kernel - CVE-2022-50706
Published: December 26, 2025 / Updated: December 31, 2025
Vulnerability identifier: #VU120530
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2022-50706
CWE-ID: CWE-617
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerable software:
Linux kernel
Linux kernel
Software vendor:
Linux Foundation
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to reachable assertion within the raw_sendmsg() function in net/ieee802154/socket.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's repository.
External links
- https://git.kernel.org/stable/c/34f31a2b667914ab701ca725554a0b447809d7ef
- https://git.kernel.org/stable/c/4a36de8947794fa21435d1e916e089095f3246a8
- https://git.kernel.org/stable/c/791489a5c56396ddfed75fc525066d4738dace46
- https://git.kernel.org/stable/c/9974d220c5073d035b5469d1d8ecd71da86c7afd
- https://git.kernel.org/stable/c/b12e924a2f5b960373459c8f8a514f887adf5cac
- https://git.kernel.org/stable/c/df0da3fc131132b6c32a15c4da4ffa3a5aea1af2
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.19.17