CVE-2022-50838Missing Release of Memory after Effective Lifetime in Linux

Severity
6.2MEDIUM
No vector
EPSS
0.0%
top 84.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: net: stream: purge sk_error_queue in sk_stream_kill_queues() Changheon Lee reported TCP socket leaks, with a nice repro. It seems we leak TCP sockets with the following sequence: 1) SOF_TIMESTAMPING_TX_ACK is enabled on the socket. Each ACK will cook an skb put in error queue, from __skb_tstamp_tx(). __skb_tstamp_tx() is using skb_clone(), unless SOF_TIMESTAMPING_OPT_TSONLY was also requested. 2) If the application is also

Affected Packages4 packages

Linuxlinux/linux_kernel4.10.04.14.303+7
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux7737b104c211fa843de268b897d601e070292a72c8c1eec578a9ae2dc8f14a1846942a0b7bf29d1d+11
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-rgwv-j5f3-fh36: In the Linux kernel, the following vulnerability has been resolved: net: stream: purge sk_error_queue in sk_stream_kill_queues() Changheon Lee repor2025-12-30
OSV
net: stream: purge sk_error_queue in sk_stream_kill_queues()2025-12-30
OSV
CVE-2022-50838: In the Linux kernel, the following vulnerability has been resolved: net: stream: purge sk_error_queue in sk_stream_kill_queues() Changheon Lee reporte2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: net: stream: purge sk_error_queue in sk_stream_kill_queues()2025-12-30
Debian
CVE-2022-50838: linux - In the Linux kernel, the following vulnerability has been resolved: net: stream...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50838 Impact, Exploitability, and Mitigation Steps | Wiz