CVE-2022-50717
A critical vulnerability in the Linux kernel’s NVMe over TCP implementation could allow an attacker to cause a memory corruption by using an out‑of‑bounds transfer tag. The issue has been fixed by adding a bounds check. Users should update to a kernel version that includes this patch.
An official fix is available, so this entry is kept for 30 days and then removed automatically.
Who is affected
Linux kernel, specifically the nvmet‑tcp component used for NVMe over TCP. Typical users are Linux system administrators and anyone running NVMe over TCP.
Real-world impact
An attacker could crash the system or potentially gain unauthorized access by exploiting the out‑of‑bounds memory access, leading to loss of confidentiality, integrity, and availability.
Why this severity
The CVSS score of 9.8 reflects that the flaw can be exploited remotely without authentication, and it allows complete compromise of confidentiality, integrity, and availability.
What to do about it
- 01Update the Linux kernel to a version that includes the nvmet‑tcp bounds check.
NVD-referenced vendor advisory
Timeline
- Dec 24, 2025 · Dec 24, 2025PublishedDisclosed and added to the National Vulnerability Database.
- Aug 4, 2026 · 1d agoAdvisory updatedThe NVD record was last revised.
- Aug 4, 2026 · 1d agoOfficial fix availableA vendor patch or mitigation now exists — see the remediation steps above.