CVE-2022-50667
published 2025-12-09CVE-2022-50667: In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the description…
PriorityP419low5.5
EPSS
0.23%
14.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
If the copy of the description string from userspace fails, then the page
for the instance descriptor doesn't get freed before returning -EFAULT,
which leads to a memleak.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.3-1 (bookworm) | linux 6.0.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < b47a37ad4a444d82f9caf153a79d090b79786ebb | b47a37ad4a444d82f9caf153a79d090b79786ebb |
| linux | linux | >= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < 6ad40bbb2c25f17b899fcea114ebc0a46d8a938b | 6ad40bbb2c25f17b899fcea114ebc0a46d8a938b |
| linux | linux | >= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < 53066b144715332ce9370143c33c50d9a4d3e809 | 53066b144715332ce9370143c33c50d9a4d3e809 |
| linux | linux | >= 7a7a933edd6c3a6d5d64e08093f2d564104cefcd < a40c7f61d12fbd1e785e59140b9efd57127c0c33 | a40c7f61d12fbd1e785e59140b9efd57127c0c33 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 5.15.0 < 5.15.75 | 5.15.75 |
| linux | linux_kernel | >= 5.16.0 < 5.19.17 | 5.19.17 |
| linux | linux_kernel | >= 5.20.0 < 6.0.3 | 6.0.3 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m79x-vc6m-3cgv: In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
If the copy of the descri
ghsa_unreviewed·2025-12-09
CVE-2022-50667 GHSA-m79x-vc6m-3cgv: In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
If the copy of the descri
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
If the copy of the description string from userspace fails, then the page
for the instance descriptor doesn't get freed before returning -EFAULT,
which leads to a memleak.
OSV
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
osv·2025-12-09
CVE-2022-50667 drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
If the copy of the description string from userspace fails, then the page
for the instance descriptor doesn't get freed before returning -EFAULT,
which leads to a memleak.
OSV
CVE-2022-50667: In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the descript
osv·2025-12-09
CVE-2022-50667 CVE-2022-50667: In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the descript
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the description string from userspace fails, then the page for the instance descriptor doesn't get freed before returning -EFAULT, which leads to a memleak.
Red Hat
kernel: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
vendor_redhat·2025-12-09·CVSS 5.5
CVE-2022-50667 [LOW] CWE-771 kernel: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
kernel: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl()
If the copy of the description string from userspace fails, then the page
for the instance descriptor doesn't get freed before returning -EFAULT,
which leads to a memleak.
A memory leak vulnerability was found in the VMware graphics driver (vmwgfx) in the Linux kernel. In vmw_mksstat_add_ioctl(), when copying the description string from userspace fails with -EFAULT, the allocated page for the instance descriptor is not freed. This leads to memory leakage that can cause resource exhaustion.
Statement: This is a memory leak in the VMware graphics driver affecting systems running as VMware guests. The leak
Debian
CVE-2022-50667: linux - In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx:...
vendor_debian·2022
CVE-2022-50667 CVE-2022-50667: linux - In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx:...
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix memory leak in vmw_mksstat_add_ioctl() If the copy of the description string from userspace fails, then the page for the instance descriptor doesn't get freed before returning -EFAULT, which leads to a memleak.
Scope: local
bookworm: resolved (fixed in 6.0.3-1)
bullseye: resolved
forky: resolved (fixed in 6.0.3-1)
sid: resolved (fixed in 6.0.3-1)
trixie: resolved (fixed in 6.0.3-1)
No detection rules found.
No public exploits indexed.
2025-12-09
Published