CVE-2022-50821Missing Release of Memory after Effective Lifetime in Linux

Severity
6.5MEDIUM
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails

Affected Packages4 packages

Linuxlinux/linux_kernel3.10.04.19.270+5
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux030d794bf49855f5e2a9e8dfbfad34211d1eb08b76f2497a2faa6a4e91efb94a7f55705b403273fd+7
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
OSV
SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails2025-12-30
OSV
CVE-2022-50821: In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails2025-12-30
GHSA
GHSA-mvq3-3j6q-8x8g: In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: SUNRPC: Don't leak netobj memory when gss_read_proxy_verf() fails2025-12-30
Debian
CVE-2022-50821: linux - In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Don...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50821 Impact, Exploitability, and Mitigation Steps | Wiz