cbcvebase.
CVE-2022-50318
published 2025-09-15

CVE-2022-50318: In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/uncore: Fix reference count leak in hswep_has_limit_sbox() pci_get_device()…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.3th percentile
In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/uncore: Fix reference count leak in hswep_has_limit_sbox() pci_get_device() will increase the reference count for the returned 'dev'. We need to call pci_dev_put() to decrease the reference count. Since 'dev' is only used in pci_read_config_dword(), let's add pci_dev_put() right after it.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 319a06e58ed7f1443f7133c05513de470f90628d < e293263248f25c6b8aa1caf7c1103d40aa03311ee293263248f25c6b8aa1caf7c1103d40aa03311e
linuxlinux>= 4.19.189 < 4.19.2704.19.270
linuxlinux>= 5.10.33 < 5.10.1635.10.163
linuxlinux>= 5.11.17 < 5.125.12
linuxlinux>= 5.4.115 < 5.4.2295.4.229
linuxlinux>= 6f8315e5d9511ed1cf28ee2afbc9f89ff693de7b < c0539d5d474ee6fa4ebc41f927a0f98f81244f25c0539d5d474ee6fa4ebc41f927a0f98f81244f25
linuxlinux>= 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5 < 3485f197518061371568f842405159aa9e4df5513485f197518061371568f842405159aa9e4df551
linuxlinux>= 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5 < 48f32b9a74e2ac8e854bb87bfefdbc745125a12348f32b9a74e2ac8e854bb87bfefdbc745125a123
linuxlinux>= 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5 < bd66877c0b3b42eed0ecee0bd2a2a505c1e54177bd66877c0b3b42eed0ecee0bd2a2a505c1e54177
linuxlinux>= 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5 < 1ff9dd6e7071a561f803135c1d684b13c7a7d01d1ff9dd6e7071a561f803135c1d684b13c7a7d01d
linuxlinux>= a8e87042482fd2d31c5cee62875b2ae75759ae8b < 5a96c10a56037db006ba6769307a9731cf6073be5a96c10a56037db006ba6769307a9731cf6073be
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 4.19.189 < 4.19.2704.19.270
linuxlinux_kernel>= 5.10.33 < 5.10.1635.10.163
linuxlinux_kernel>= 5.11.17 < 5.125.12
linuxlinux_kernel>= 5.12.1 < 5.15.865.15.86
linuxlinux_kernel>= 5.16 < 6.0.166.0.16
linuxlinux_kernel>= 5.4.115 < 5.4.2295.4.229

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.