cbcvebase.
CVE-2022-50667
published 2025-12-09

CVE-2022-50667: In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the description…

PriorityP419low5.5
EPSS
0.23%
14.5th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the description string from userspace fails, then the page for the instance descriptor doesn't get freed before returning -EFAULT, which leads to a memleak.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.3-1 (bookworm)linux 6.0.3-1 (bookworm)
linuxlinux
linuxlinux>= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < b47a37ad4a444d82f9caf153a79d090b79786ebbb47a37ad4a444d82f9caf153a79d090b79786ebb
linuxlinux>= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < 6ad40bbb2c25f17b899fcea114ebc0a46d8a938b6ad40bbb2c25f17b899fcea114ebc0a46d8a938b
linuxlinux>= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < 53066b144715332ce9370143c33c50d9a4d3e80953066b144715332ce9370143c33c50d9a4d3e809
linuxlinux>= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < a40c7f61d12fbd1e785e59140b9efd57127c0c33a40c7f61d12fbd1e785e59140b9efd57127c0c33
linuxlinux_kernel>= 0 < 6.0.3-16.0.3-1
linuxlinux_kernel>= 0 < 6.0.3-16.0.3-1
linuxlinux_kernel>= 0 < 6.0.3-16.0.3-1
linuxlinux_kernel>= 5.15.0 < 5.15.755.15.75
linuxlinux_kernel>= 5.16.0 < 5.19.175.19.17
linuxlinux_kernel>= 5.20.0 < 6.0.36.0.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.