cbcvebase.
CVE-2022-50384
published 2025-09-18

CVE-2022-50384: In the Linux kernel, the following vulnerability has been resolved: staging: vme_user: Fix possible UAF in tsi148_dma_list_add Smatch report warning as…

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.16%
5.3th percentile
In the Linux kernel, the following vulnerability has been resolved: staging: vme_user: Fix possible UAF in tsi148_dma_list_add Smatch report warning as follows: drivers/staging/vme_user/vme_tsi148.c:1757 tsi148_dma_list_add() warn: '&entry->list' not removed from list In tsi148_dma_list_add(), the error path "goto err_dma" will not remove entry->list from list->entries, but entry will be freed, then list traversal may cause UAF. Fix by removeing it from list->entries before free().

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < 5cc4eea715a3fcf4e516662f736dfee63979465f5cc4eea715a3fcf4e516662f736dfee63979465f
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < 51c0ad3b7c5b01f9314758335a13f157b05fa56d51c0ad3b7c5b01f9314758335a13f157b05fa56d
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < e6b0adff99edf246ba1f8d464530a0438cb1cbdae6b0adff99edf246ba1f8d464530a0438cb1cbda
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < a45ba33d398a821147d7e5f16ead7eb125e331e2a45ba33d398a821147d7e5f16ead7eb125e331e2
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < 5d2b286eb034af114f67d9967fc3fbc1829bb7125d2b286eb034af114f67d9967fc3fbc1829bb712
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < 1f5661388f43df3ac106ce93e67d8d22b16a78ff1f5661388f43df3ac106ce93e67d8d22b16a78ff
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < cf138759a7e92c75cfc1b7ba705e4108fe330edfcf138759a7e92c75cfc1b7ba705e4108fe330edf
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < 85db68fc901da52314ded80aace99f8b684c781585db68fc901da52314ded80aace99f8b684c7815
linuxlinux>= b2383c90a9d691201b9aee557776694cde86a935 < 357057ee55d3c99a5de5abe8150f7bca04f8e53b357057ee55d3c99a5de5abe8150f7bca04f8e53b
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 4.10 < 4.14.3034.14.303
linuxlinux_kernel>= 4.15 < 4.19.2704.19.270
linuxlinux_kernel>= 4.2 < 4.9.3374.9.337
linuxlinux_kernel>= 4.20 < 5.4.2295.4.229
linuxlinux_kernel>= 5.11 < 5.15.865.15.86
linuxlinux_kernel>= 5.16 < 6.0.166.0.16
linuxlinux_kernel>= 5.5 < 5.10.1635.10.163
linuxlinux_kernel>= 6.1 < 6.1.26.1.2

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.