cbcvebase.
CVE-2022-50767
published 2025-12-24

CVE-2022-50767: In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: Fix several use-after-free bugs Several types of UAFs can occur when…

PriorityP423
EPSS
0.22%
12.4th percentile
In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: Fix several use-after-free bugs Several types of UAFs can occur when physically removing a USB device. Adds ufx_ops_destroy() function to .fb_destroy of fb_ops, and in this function, there is kref_put() that finally calls ufx_free(). This fix prevents multiple UAFs.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.7-1 (bookworm)linux 6.0.7-1 (bookworm)
linuxlinux
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < 6f2075ea883e5d7730d0c9ebb1bb8e7a1a7e953f6f2075ea883e5d7730d0c9ebb1bb8e7a1a7e953f
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < 3f40852d671072836fb7ae331a1f28a24223c4e83f40852d671072836fb7ae331a1f28a24223c4e8
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < 70faf9d9b6cc74418716bbf76fe75bd2da10ad4a70faf9d9b6cc74418716bbf76fe75bd2da10ad4a
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < 5385af2f89bc352fb70753ab41b2bb036190141f5385af2f89bc352fb70753ab41b2bb036190141f
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < d9ddfeb01fb95ffbbc7031d46a5ee2a5e45cbb86d9ddfeb01fb95ffbbc7031d46a5ee2a5e45cbb86
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < cc6a7249842fceda7574ceb63275a2d5e99d2862cc6a7249842fceda7574ceb63275a2d5e99d2862
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < 8d924b262f3178a9b17c17d4306a9f426c508bd98d924b262f3178a9b17c17d4306a9f426c508bd9
linuxlinux>= 3c8a63e22a0802fd56380f6ab305b419f18eb6f5 < cc67482c9e5f2c80d62f623bcc347c29f9f648e1cc67482c9e5f2c80d62f623bcc347c29f9f648e1
linuxlinux_kernel>= 0 < 5.10.158-15.10.158-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 3.2.0 < 4.9.3324.9.332
linuxlinux_kernel>= 4.10.0 < 4.14.2984.14.298
linuxlinux_kernel>= 4.15.0 < 4.19.2644.19.264
linuxlinux_kernel>= 4.20.0 < 5.4.2235.4.223
linuxlinux_kernel>= 5.11.0 < 5.15.775.15.77
linuxlinux_kernel>= 5.16.0 < 6.0.76.0.7
linuxlinux_kernel>= 5.5.0 < 5.10.1535.10.153
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.