CVE-2022-50482
published 2025-10-04CVE-2022-50482: In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Clean up si_domain in the init_dmars() error path
A splat from kmem_cache_destroy() was seen with a kernel prior to
commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool")
when there was a failure in init_dmars(), because the iommu_domain
cache still had objects. While the mempool code is now gone, there
still is a leak of the si_domain memory if init_dmars() fails. So
clean up si_domain in the init_dmars() error path.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.6-1 (bookworm) | linux 6.0.6-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 749bea542b67513e99240dc58bbfc099e842d508 | 749bea542b67513e99240dc58bbfc099e842d508 |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 5cecfe151874b835331efe086bbdcaeaf64f6b90 | 5cecfe151874b835331efe086bbdcaeaf64f6b90 |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 724483b585a1b1e063d42ac5aa835707ff2ec165 | 724483b585a1b1e063d42ac5aa835707ff2ec165 |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < d74196bb278b8f8af88e16bd595997dfa3d6fdb0 | d74196bb278b8f8af88e16bd595997dfa3d6fdb0 |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 0365d6af75f9f2696e94a0fef24a2c8464c037c8 | 0365d6af75f9f2696e94a0fef24a2c8464c037c8 |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < c4ad3ae4c6be9d8b0701761c839771116bca6ea3 | c4ad3ae4c6be9d8b0701761c839771116bca6ea3 |
| linux | linux | >= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 620bf9f981365c18cc2766c53d92bf8131c63f32 | 620bf9f981365c18cc2766c53d92bf8131c63f32 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.158-1 | 5.10.158-1 |
| linux | linux_kernel | >= 0 < 6.0.6-1 | 6.0.6-1 |
| linux | linux_kernel | >= 0 < 6.0.6-1 | 6.0.6-1 |
| linux | linux_kernel | >= 0 < 6.0.6-1 | 6.0.6-1 |
| linux | linux_kernel | >= 4.15 < 4.19.264 | 4.19.264 |
| linux | linux_kernel | >= 4.2 < 4.14.298 | 4.14.298 |
| linux | linux_kernel | >= 4.20 < 5.4.221 | 5.4.221 |
| linux | linux_kernel | >= 5.11 < 5.15.76 | 5.15.76 |
| linux | linux_kernel | >= 5.16 < 6.0.6 | 6.0.6 |
| linux | linux_kernel | >= 5.5 < 5.10.152 | 5.10.152 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: iommu/vt-d: Clean up si_domain in the init_dmars() error path
vendor_redhat·2025-10-04·CVSS 5.5
CVE-2022-50482 [MEDIUM] kernel: iommu/vt-d: Clean up si_domain in the init_dmars() error path
kernel: iommu/vt-d: Clean up si_domain in the init_dmars() error path
In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Clean up si_domain in the init_dmars() error path
A splat from kmem_cache_destroy() was seen with a kernel prior to
commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool")
when there was a failure in init_dmars(), because the iommu_domain
cache still had objects. While the mempool code is now gone, there
still is a leak of the si_domain memory if init_dmars() fails. So
clean up si_domain in the init_dmars() error path.
A memory leak flaw was found in the Linux kernel's Intel VT-d IOMMU driver in the initialization error path. A local user can trigger this issue when the init_dmars function fails during IOMMU setup, causing the
Debian
CVE-2022-50482: linux - In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d:...
vendor_debian·2022·CVSS 5.5
CVE-2022-50482 [MEDIUM] CVE-2022-50482: linux - In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d:...
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_cache_destroy() was seen with a kernel prior to commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool") when there was a failure in init_dmars(), because the iommu_domain cache still had objects. While the mempool code is now gone, there still is a leak of the si_domain memory if init_dmars() fails. So clean up si_domain in the init_dmars() error path.
Scope: local
bookworm: resolved (fixed in 6.0.6-1)
bullseye: resolved (fixed in 5.10.158-1)
forky: resolved (fixed in 6.0.6-1)
sid: resolved (fixed in 6.0.6-1)
trixie: resolved (fixed in 6.0.6-1)
OSV
CVE-2022-50482: In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_ca
osv·2025-10-04·CVSS 5.5
CVE-2022-50482 [MEDIUM] CVE-2022-50482: In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_ca
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_cache_destroy() was seen with a kernel prior to commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool") when there was a failure in init_dmars(), because the iommu_domain cache still had objects. While the mempool code is now gone, there still is a leak of the si_domain memory if init_dmars() fails. So clean up si_domain in the init_dmars() error path.
GHSA
GHSA-3fh4-4hv7-69qh: In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Clean up si_domain in the init_dmars() error path
A splat from kmem_
ghsa_unreviewed·2025-10-04
CVE-2022-50482 [MEDIUM] CWE-908 GHSA-3fh4-4hv7-69qh: In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Clean up si_domain in the init_dmars() error path
A splat from kmem_
In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Clean up si_domain in the init_dmars() error path
A splat from kmem_cache_destroy() was seen with a kernel prior to
commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool")
when there was a failure in init_dmars(), because the iommu_domain
cache still had objects. While the mempool code is now gone, there
still is a leak of the si_domain memory if init_dmars() fails. So
clean up si_domain in the init_dmars() error path.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/0365d6af75f9f2696e94a0fef24a2c8464c037c8https://git.kernel.org/stable/c/5cecfe151874b835331efe086bbdcaeaf64f6b90https://git.kernel.org/stable/c/620bf9f981365c18cc2766c53d92bf8131c63f32https://git.kernel.org/stable/c/724483b585a1b1e063d42ac5aa835707ff2ec165https://git.kernel.org/stable/c/749bea542b67513e99240dc58bbfc099e842d508https://git.kernel.org/stable/c/c4ad3ae4c6be9d8b0701761c839771116bca6ea3https://git.kernel.org/stable/c/d74196bb278b8f8af88e16bd595997dfa3d6fdb0
2025-10-04
Published