In the Linux kernel, the following vulnerability has been resolved:
bpf: Propagate error from htab_lock_bucket() to userspace
In __htab_map_lookup_and_delete_batch() if htab_lock_bucket() returns
-EBUSY, it will go to next bucket. Going to next bucket may not only
skip the elements in current bucket silently, but also incur
out-of-bound memory access or expose kernel memory to userspace if
current bucket_cnt is greater than bucket_size or zero.
Fixing it by stopping batch operation and returning -EBUSY when
htab_lock_bucket() fails, and the application can retry or skip the busy
batch as needed.
References
Configurations
Configuration 1 (hide)
|
History
27 Jan 2026, 17:35
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-125 | |
| First Time |
Linux
Linux linux Kernel |
|
| References | () https://git.kernel.org/stable/c/0e13425104903970a5ede853082d3bbb4edec6f3 - Patch | |
| References | () https://git.kernel.org/stable/c/4f1f39a8f1ce1b24fee6852d7dcd704ce7c4334d - Patch | |
| References | () https://git.kernel.org/stable/c/66a7a92e4d0d091e79148a4c6ec15d1da65f4280 - Patch | |
| References | () https://git.kernel.org/stable/c/6bfee6eb3d6b96ae730a542909dd22b5f9f50d58 - Patch | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.1 |
04 Oct 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-04 16:15
Updated : 2026-01-27 17:35
NVD link : CVE-2022-50490
Mitre link : CVE-2022-50490
CVE.ORG link : CVE-2022-50490
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-125
Out-of-bounds Read
