cbcvebase.
CVE-2022-50165
published 2025-06-18

CVE-2022-50165: In the Linux kernel, the following vulnerability has been resolved: wifi: wil6210: debugfs: fix uninitialized variable use in `wil_write_file_wmi()` Commit…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.20%
10.4th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: wil6210: debugfs: fix uninitialized variable use in `wil_write_file_wmi()` Commit 7a4836560a61 changes simple_write_to_buffer() with memdup_user() but it forgets to change the value to be returned that came from simple_write_to_buffer() call. It results in the following warning: warning: variable 'rc' is uninitialized when used here [-Wuninitialized] return rc; ^~ Remove rc variable and just return the passed in length if the memdup_user() succeeds.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.2-1 (bookworm)linux 6.0.2-1 (bookworm)
linuxlinux
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < b13c84e877d7a3095bacb14665db304b2c00e95fb13c84e877d7a3095bacb14665db304b2c00e95f
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < c9fde3a44da566d8929070ab6bda4f0dfa9955d0c9fde3a44da566d8929070ab6bda4f0dfa9955d0
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < 52b11a48cf073e0aab923ae809a765d756cecf1352b11a48cf073e0aab923ae809a765d756cecf13
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < 6c5fee83bdbeffe8d607d1ab125122a75f40bd1a6c5fee83bdbeffe8d607d1ab125122a75f40bd1a
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < 689e5caf63e99e15d2f485ec297c1bf9243e0e28689e5caf63e99e15d2f485ec297c1bf9243e0e28
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < d4742c886043b69d2d058bfde3998ef333b66595d4742c886043b69d2d058bfde3998ef333b66595
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < 409bd72e544fdf4809ea0dac337bb5a1f11a25a9409bd72e544fdf4809ea0dac337bb5a1f11a25a9
linuxlinux>= ff974e4083341383d3dd4079e52ed30f57f376f0 < d578e0af3a003736f6c440188b156483d451b329d578e0af3a003736f6c440188b156483d451b329
linuxlinux_kernel>= 0 < 5.10.140-15.10.140-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 3.17 < 4.14.2914.14.291
linuxlinux_kernel>= 4.15 < 4.19.2564.19.256
linuxlinux_kernel>= 4.20 < 5.4.2115.4.211
linuxlinux_kernel>= 5.11 < 5.15.615.15.61
linuxlinux_kernel>= 5.16 < 5.18.185.18.18
linuxlinux_kernel>= 5.19 < 5.19.25.19.2
linuxlinux_kernel>= 5.5 < 5.10.1375.10.137

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.