CVE-2022-50719
published 2025-12-24CVE-2022-50719: In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: fix stack overflow in line6_midi_transmit Correctly calculate available space…
PriorityP342high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.20%
9.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate available space including the size of the chunk
buffer. This fixes a buffer overflow when multiple MIDI sysex
messages are sent to a PODxt device.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.4-1 (bookworm) | linux 6.1.4-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < b026af92b2cea907c780f7168c730c816cd33311 | b026af92b2cea907c780f7168c730c816cd33311 |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 49cb7737e733013ec86aa77ed2e19b94a68eaa05 | 49cb7737e733013ec86aa77ed2e19b94a68eaa05 |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 0c76087449ee4ed45a88b10017d02c6694caedb1 | 0c76087449ee4ed45a88b10017d02c6694caedb1 |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 25e8c6ecb46843a955f254b8f0d77894e4a53dc4 | 25e8c6ecb46843a955f254b8f0d77894e4a53dc4 |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 66f359ad66d49f75d39ac729f9114dabf90b81bb | 66f359ad66d49f75d39ac729f9114dabf90b81bb |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 0c9118e381ff538874e00fd4e66a768273c150fb | 0c9118e381ff538874e00fd4e66a768273c150fb |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 61e4be4a60cc6de723f8c574ddbcb3025eb44cac | 61e4be4a60cc6de723f8c574ddbcb3025eb44cac |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < 389d34c2a8b52acc351fd932ed4bea41fee5a39b | 389d34c2a8b52acc351fd932ed4bea41fee5a39b |
| linux | linux | >= f2459201c72e8f8553644505eed19954d4c3a023 < b8800d324abb50160560c636bfafe2c81001b66c | b8800d324abb50160560c636bfafe2c81001b66c |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 3.15.0 < 4.9.337 | 4.9.337 |
| linux | linux_kernel | >= 4.10.0 < 4.14.303 | 4.14.303 |
| linux | linux_kernel | >= 4.15.0 < 4.19.270 | 4.19.270 |
| linux | linux_kernel | >= 4.20.0 < 5.4.229 | 5.4.229 |
| linux | linux_kernel | >= 5.11.0 < 5.15.87 | 5.15.87 |
| linux | linux_kernel | >= 5.16.0 < 6.0.17 | 6.0.17 |
| linux | linux_kernel | >= 5.5.0 < 5.10.163 | 5.10.163 |
| linux | linux_kernel | >= 6.1.0 < 6.1.3 | 6.1.3 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
ghsa6.5MEDIUM
vendor_redhat5.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2022-50719: In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: fix stack overflow in line6_midi_transmit Correctly calculate availab
osv·2025-12-24
CVE-2022-50719 CVE-2022-50719: In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: fix stack overflow in line6_midi_transmit Correctly calculate availab
In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: fix stack overflow in line6_midi_transmit Correctly calculate available space including the size of the chunk buffer. This fixes a buffer overflow when multiple MIDI sysex messages are sent to a PODxt device.
OSV
ALSA: line6: fix stack overflow in line6_midi_transmit
osv·2025-12-24
CVE-2022-50719 ALSA: line6: fix stack overflow in line6_midi_transmit
ALSA: line6: fix stack overflow in line6_midi_transmit
In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate available space including the size of the chunk
buffer. This fixes a buffer overflow when multiple MIDI sysex
messages are sent to a PODxt device.
GHSA
GHSA-j6jv-hgrf-2v93: In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate avail
ghsa_unreviewed·2025-12-24
CVE-2022-50719 GHSA-j6jv-hgrf-2v93: In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate avail
In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate available space including the size of the chunk
buffer. This fixes a buffer overflow when multiple MIDI sysex
messages are sent to a PODxt device.
GHSA
Solr search discloses password hashes of all users
ghsa·2023-12-16·CVSS 6.5
CVE-2023-50719 [MEDIUM] CWE-200 Solr search discloses password hashes of all users
Solr search discloses password hashes of all users
### Impact
The Solr-based search in XWiki discloses the password hashes of all users to anyone with view right on the respective user profiles. By default, all user profiles are public. To reproduce, it is sufficient to search for `propertyvalue:?* AND reference:*.password` and then deselect the "Document" property under "Result type" in the "Refine your search" widget at the right of the search results. If this displays any passwords or password hashes, the installation is vulnerable.
By default, passwords in XWiki are salted and hashed with SHA-512. On XWiki versions affected by [CVE-2022-41933](https://github.com/xwiki/xwiki-platform/security/advisories/GHSA-q2hm-2h45-v5g3), passwords are stored in plain text if they have been set usi
Red Hat
kernel: ALSA: line6: fix stack overflow in line6_midi_transmit
vendor_redhat·2025-12-24·CVSS 5.5
CVE-2022-50719 [LOW] kernel: ALSA: line6: fix stack overflow in line6_midi_transmit
kernel: ALSA: line6: fix stack overflow in line6_midi_transmit
In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate available space including the size of the chunk
buffer. This fixes a buffer overflow when multiple MIDI sysex
messages are sent to a PODxt device.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 7) - Fix deferred
Package: kernel (Red Hat Enterprise Linux 8) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 8) - Fix deferred
Package: kernel (Red Hat Enterprise Linux 9) - Fix deferred
Package: ke
Debian
CVE-2022-50719: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: line6...
vendor_debian·2022
CVE-2022-50719 CVE-2022-50719: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: line6...
In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: fix stack overflow in line6_midi_transmit Correctly calculate available space including the size of the chunk buffer. This fixes a buffer overflow when multiple MIDI sysex messages are sent to a PODxt device.
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.4-1)
sid: resolved (fixed in 6.1.4-1)
trixie: resolved (fixed in 6.1.4-1)
No detection rules found.
No public exploits indexed.
Wiz
CVE-2022-50719 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2022-50719 CVE-2022-50719 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2022-50719 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate available space including the size of the chunk
buffer. This fixes a buffer overflow when multiple MIDI sysex
messages are sent to a PODxt device.
Source : NVD
Published December 24, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 30.3
Exploitation Probability (EPSS) 0.1
Affected packages and libraries
kernel-rt-64k-modules-core
kernel-rt-64k-modules-extra
Sources
NVD
Debian 11, 12, 13, 14 Has Fix Added a
Bugzilla
CVE-2022-50719 kernel: ALSA: line6: fix stack overflow in line6_midi_transmit
bugzilla·2025-12-24
CVE-2022-50719 [LOW] CVE-2022-50719 kernel: ALSA: line6: fix stack overflow in line6_midi_transmit
CVE-2022-50719 kernel: ALSA: line6: fix stack overflow in line6_midi_transmit
In the Linux kernel, the following vulnerability has been resolved:
ALSA: line6: fix stack overflow in line6_midi_transmit
Correctly calculate available space including the size of the chunk
buffer. This fixes a buffer overflow when multiple MIDI sysex
messages are sent to a PODxt device.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025122416-CVE-2022-50719-02d8@gregkh/T
https://git.kernel.org/stable/c/0c76087449ee4ed45a88b10017d02c6694caedb1https://git.kernel.org/stable/c/0c9118e381ff538874e00fd4e66a768273c150fbhttps://git.kernel.org/stable/c/25e8c6ecb46843a955f254b8f0d77894e4a53dc4https://git.kernel.org/stable/c/389d34c2a8b52acc351fd932ed4bea41fee5a39bhttps://git.kernel.org/stable/c/49cb7737e733013ec86aa77ed2e19b94a68eaa05https://git.kernel.org/stable/c/61e4be4a60cc6de723f8c574ddbcb3025eb44cachttps://git.kernel.org/stable/c/66f359ad66d49f75d39ac729f9114dabf90b81bbhttps://git.kernel.org/stable/c/b026af92b2cea907c780f7168c730c816cd33311https://git.kernel.org/stable/c/b8800d324abb50160560c636bfafe2c81001b66c
2025-12-24
Published