cbcvebase.
CVE-2022-50399
published 2025-09-18

CVE-2022-50399: In the Linux kernel, the following vulnerability has been resolved: media: atomisp: prevent integer overflow in sh_css_set_black_frame() The "height" and…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
5.0th percentile
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: prevent integer overflow in sh_css_set_black_frame() The "height" and "width" values come from the user so the "height * width" multiplication can overflow.

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.7-1 (bookworm)linux 6.0.7-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= a49d25364dfb9f8a64037488a39ab1f56c5fa419 < 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb65451b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < a560aeac2f2d284903b5900774765d7fc61547bca560aeac2f2d284903b5900774765d7fc61547bc
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < a549517e4b761f3940011db30320cb8c9badde54a549517e4b761f3940011db30320cb8c9badde54
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 3ad290194bb06979367622e47357462836c1d3b43ad290194bb06979367622e47357462836c1d3b4
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 4.12 < 4.184.18
linuxlinux_kernel>= 5.16 < 6.0.76.0.7
linuxlinux_kernel>= 5.8 < 5.15.775.15.77

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.