cbcvebase.
CVE-2022-50482
published 2025-10-04

CVE-2022-50482: In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.7th percentile
In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_cache_destroy() was seen with a kernel prior to commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool") when there was a failure in init_dmars(), because the iommu_domain cache still had objects. While the mempool code is now gone, there still is a leak of the si_domain memory if init_dmars() fails. So clean up si_domain in the init_dmars() error path.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.6-1 (bookworm)linux 6.0.6-1 (bookworm)
linuxlinux
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 749bea542b67513e99240dc58bbfc099e842d508749bea542b67513e99240dc58bbfc099e842d508
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 5cecfe151874b835331efe086bbdcaeaf64f6b905cecfe151874b835331efe086bbdcaeaf64f6b90
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 724483b585a1b1e063d42ac5aa835707ff2ec165724483b585a1b1e063d42ac5aa835707ff2ec165
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < d74196bb278b8f8af88e16bd595997dfa3d6fdb0d74196bb278b8f8af88e16bd595997dfa3d6fdb0
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 0365d6af75f9f2696e94a0fef24a2c8464c037c80365d6af75f9f2696e94a0fef24a2c8464c037c8
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < c4ad3ae4c6be9d8b0701761c839771116bca6ea3c4ad3ae4c6be9d8b0701761c839771116bca6ea3
linuxlinux>= 86080ccc223aabf8d0b85a504f4f06aa88e82fb3 < 620bf9f981365c18cc2766c53d92bf8131c63f32620bf9f981365c18cc2766c53d92bf8131c63f32
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.158-15.10.158-1
linuxlinux_kernel>= 0 < 6.0.6-16.0.6-1
linuxlinux_kernel>= 0 < 6.0.6-16.0.6-1
linuxlinux_kernel>= 0 < 6.0.6-16.0.6-1
linuxlinux_kernel>= 4.15 < 4.19.2644.19.264
linuxlinux_kernel>= 4.2 < 4.14.2984.14.298
linuxlinux_kernel>= 4.20 < 5.4.2215.4.221
linuxlinux_kernel>= 5.11 < 5.15.765.15.76
linuxlinux_kernel>= 5.16 < 6.0.66.0.6
linuxlinux_kernel>= 5.5 < 5.10.1525.10.152

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.