CVE-2022-50213
Linux Kernel vulnerability analysis and mitigation

Overview

In the Linux kernel, a vulnerability has been identified in the netfilter nf_tables component. When performing lookups for sets on the same batch using its ID, a set from a different table could be used. This issue could lead to a potential use-after-free vulnerability when the table is removed while still maintaining a reference to the freed set (NVD, Wiz).

Technical details

The vulnerability occurs in the netfilter's nftables functionality where SET_ID references could point to sets in other tables. When looking up sets by ID, the system failed to restrict the lookup to sets belonging to the same table that was used for the lookup by name. This could result in maintaining references to sets after they have been freed, leading to a use-after-free condition. This vulnerability is related to and fixes CVE-2022-2586 (also reported as ZDI-CAN-17470) (NVD, Wiz).

Impact

If exploited, this vulnerability could allow an attacker to potentially execute arbitrary code or cause system crashes through the use-after-free condition. The vulnerability affects the kernel's network filtering subsystem, which is a critical component for system security (Wiz).

Mitigation and workarounds

The vulnerability has been resolved by modifying the set lookup behavior to ensure that when looking for sets by ID, only sets belonging to the same table that was used for the lookup by name are returned. Users should update their Linux kernel to a version containing the fix (Wiz).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-71142N/AN/A
  • Linux KernelLinux Kernel
  • kernel-64k-debug-devel-matched
NoNoJan 14, 2026
CVE-2025-71137N/AN/A
  • Linux KernelLinux Kernel
  • linux-gcp
NoYesJan 14, 2026
CVE-2025-71135N/AN/A
  • Linux KernelLinux Kernel
  • kernel-debug-core
NoNoJan 14, 2026
CVE-2025-71134N/AN/A
  • Linux KernelLinux Kernel
  • kernel-uki-virt
NoNoJan 14, 2026
CVE-2025-71133N/AN/A
  • Linux KernelLinux Kernel
  • kernel-modules-extra
NoYesJan 14, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management