CVE-2022-50767Linux vulnerability

7 documents6 sources
Severity
N/A
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: Fix several use-after-free bugs Several types of UAFs can occur when physically removing a USB device. Adds ufx_ops_destroy() function to .fb_destroy of fb_ops, and in this function, there is kref_put() that finally calls ufx_free(). This fix prevents multiple UAFs.

Affected Packages4 packages

Linuxlinux/linux_kernel3.2.04.9.332+6
Debianlinux/linux_kernel< 5.10.158-1+3
CVEListV5linux/linux3c8a63e22a0802fd56380f6ab305b419f18eb6f56f2075ea883e5d7730d0c9ebb1bb8e7a1a7e953f+8
debiandebian/linux< linux 6.0.7-1 (bookworm)

🔴Vulnerability Details

3
OSV
fbdev: smscufx: Fix several use-after-free bugs2025-12-24
GHSA
GHSA-gvc9-3fj4-7qr5: In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: Fix several use-after-free bugs Several types of UAFs can occur2025-12-24
OSV
CVE-2022-50767: In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: Fix several use-after-free bugs Several types of UAFs can occur wh2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: fbdev: smscufx: Fix several use-after-free bugs2025-12-24
Debian
CVE-2022-50767: linux - In the Linux kernel, the following vulnerability has been resolved: fbdev: smsc...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50767 Impact, Exploitability, and Mitigation Steps | Wiz