CVE-2022-50467: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix null ndlp ptr dereference in abnormal exit path for GFT_ID An error case exit from lpfc_cmpl_ct_cmd_gft_id() results in a call to lpfc_nlp_put() with a null pointer to a nodelist structure. Changed lpfc_cmpl_ct_cmd_gft_id() to initialize nodelist pointer upon entry.
Affected products
- Linux Linux Kernel: from 5.14, before 5.19.17 (fixed in 5.19.17); from 6.0, before 6.0.3 (fixed in 6.0.3)
Published 2025-10-01. Last modified 2026-06-17.