CVE-2022-50059

high

Description

In the Linux kernel, the following vulnerability has been resolved: ceph: don't leak snap_rwsem in handle_cap_grant When handle_cap_grant is called on an IMPORT op, then the snap_rwsem is held and the function is expected to release it before returning. It currently fails to do that in all cases which could lead to a deadlock.

References

https://git.kernel.org/stable/c/f546faa216d0f53a42ca73ba1fd8c48765b22d77

https://git.kernel.org/stable/c/aee18421bda6bf12a7cba6a3d7751c0e1cfd0094

https://git.kernel.org/stable/c/a090cc69699ec2d11b5e34cee8c61f0d4b0068cb

https://git.kernel.org/stable/c/58dd4385577ed7969b80cdc9e2a31575aba6c712

Details

Source: Mitre, NVD

Published: 2025-06-18

Updated: 2025-06-18

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00018