CVE-2022-50483Linux vulnerability

5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 96.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 4

Description

In the Linux kernel, the following vulnerability has been resolved: net: enetc: avoid buffer leaks on xdp_do_redirect() failure Before enetc_clean_rx_ring_xdp() calls xdp_do_redirect(), each software BD in the RX ring between index orig_i and i can have one of 2 refcount values on its page. We are the owner of the current buffer that is being processed, so the refcount will be at least 1. If the current owner of the buffer at the diametrically opposed index in the RX ring (i.o.w, the other h

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel5.135.15.86+2
Debianlinux/linux_kernel< 6.1.4-1+2
CVEListV5linux/linux9d2b68cc108db2fdb35022ed2d88cfb305c441a6bcf2c1dc5358dcf7e34a68cdb6b0bbf967801efa+4
debiandebian/linux< linux 6.1.4-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2022-50483: In the Linux kernel, the following vulnerability has been resolved: net: enetc: avoid buffer leaks on xdp_do_redirect() failure Before enetc_clean_rx_2025-10-04
GHSA
GHSA-3xm2-jm9m-87r6: In the Linux kernel, the following vulnerability has been resolved: net: enetc: avoid buffer leaks on xdp_do_redirect() failure Before enetc_clean_r2025-10-04

📋Vendor Advisories

2
Red Hat
kernel: net: enetc: avoid buffer leaks on xdp_do_redirect() failure2025-10-04
Debian
CVE-2022-50483: linux - In the Linux kernel, the following vulnerability has been resolved: net: enetc:...2022