CVE-2022-50854
published 2025-12-30CVE-2022-50854: In the Linux kernel, the following vulnerability has been resolved: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send() skb should be free in…
PriorityP419
EPSS
0.17%
6.9th percentile
In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in virtual_nci_send(), otherwise kmemleak will report
memleak.
Steps for reproduction (simulated in qemu):
cd tools/testing/selftests/nci
make
./nci_dev
BUG: memory leak
unreferenced object 0xffff888107588000 (size 208):
comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] __alloc_skb+0x1da/0x290
[] nci_send_cmd+0xa3/0x350
[] nci_reset_req+0x6b/0xa0
[] __nci_request+0x90/0x250
[] nci_dev_up+0x217/0x5b0
[] nfc_dev_up+0x114/0x220
[] nfc_genl_dev_up+0x94/0xe0
[] genl_family_rcv_msg_doit.isra.14+0x228/0x2d0
[] genl_rcv_msg+0x35c/0x640
[] netlink_rcv_skb+0x11e/0x350
[] genl_rcv+0x24/0x40
[] netlink_unicast+0x43f/0x640
[] netlink_sendmsg+0x73a/0xbf0
[] __sys_sendto+0x324/0x370
[] __x64_sys_sendto+0xdd/0x1b0
[] do_syscall_64+0x3f/0x90
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.7-1 (bookworm) | linux 6.0.7-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= e624e6c3e777fb3dfed036b9da4d433aee3608a5 < 88e879c9f59511174ef0ab1a3c9c83e2dbf8a213 | 88e879c9f59511174ef0ab1a3c9c83e2dbf8a213 |
| linux | linux | >= e624e6c3e777fb3dfed036b9da4d433aee3608a5 < 2c46a9a5f0b1c7341aa67667801079f3ff571678 | 2c46a9a5f0b1c7341aa67667801079f3ff571678 |
| linux | linux | >= e624e6c3e777fb3dfed036b9da4d433aee3608a5 < e840d8f4a1b323973052a1af5ad4edafcde8ae3d | e840d8f4a1b323973052a1af5ad4edafcde8ae3d |
| linux | linux_kernel | >= 0 < 6.0.7-1 | 6.0.7-1 |
| linux | linux_kernel | >= 0 < 6.0.7-1 | 6.0.7-1 |
| linux | linux_kernel | >= 0 < 6.0.7-1 | 6.0.7-1 |
| linux | linux_kernel | >= 5.12.0 < 5.15.77 | 5.15.77 |
| linux | linux_kernel | >= 5.16.0 < 6.0.7 | 6.0.7 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Linux Kernel up to 5.15.76/6.0.6 nfc virtual_nci_send memory leak (Nessus ID 281728 / WID-SEC-2025-2941)
vuldb·2026-04-26
CVE-2022-50854 [CRITICAL] Linux Kernel up to 5.15.76/6.0.6 nfc virtual_nci_send memory leak (Nessus ID 281728 / WID-SEC-2025-2941)
A vulnerability, which was classified as critical, was found in Linux Kernel up to 5.15.76/6.0.6. This impacts the function virtual_nci_send of the component nfc. The manipulation results in memory leak.
This vulnerability is identified as CVE-2022-50854. The attack can only be performed from the local network. There is not any exploit available.
You should upgrade the affected component.
GHSA
GHSA-7h7x-whhw-m2r2: In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in
ghsa_unreviewed·2025-12-30
CVE-2022-50854 GHSA-7h7x-whhw-m2r2: In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in
In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in virtual_nci_send(), otherwise kmemleak will report
memleak.
Steps for reproduction (simulated in qemu):
cd tools/testing/selftests/nci
make
./nci_dev
BUG: memory leak
unreferenced object 0xffff888107588000 (size 208):
comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] __alloc_skb+0x1da/0x290
[] nci_send_cmd+0xa3/0x350
[] nci_reset_req+0x6b/0xa0
[] __nci_request+0x90/0x250
[] nci_dev_up+0x217/0x5b0
[] nfc_dev_up+0x114/0x220
[] nfc_genl_dev_up+0x94/0xe0
[] genl_fami
OSV
CVE-2022-50854: In the Linux kernel, the following vulnerability has been resolved: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send() skb should be free in v
osv·2025-12-30
CVE-2022-50854 CVE-2022-50854: In the Linux kernel, the following vulnerability has been resolved: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send() skb should be free in v
In the Linux kernel, the following vulnerability has been resolved: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send() skb should be free in virtual_nci_send(), otherwise kmemleak will report memleak. Steps for reproduction (simulated in qemu): cd tools/testing/selftests/nci make ./nci_dev BUG: memory leak unreferenced object 0xffff888107588000 (size 208): comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [] __alloc_skb+0x1da/0x290 [] nci_send_cmd+0xa3/0x350 [] nci_reset_req+0x6b/0xa0 [] __nci_request+0x90/0x250 [] nci_dev_up+0x217/0x5b0 [] nfc_dev_up+0x114/0x220 [] nfc_genl_dev_up+0x94/0xe0 [] genl_family_r
OSV
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
osv·2025-12-30
CVE-2022-50854 nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in virtual_nci_send(), otherwise kmemleak will report
memleak.
Steps for reproduction (simulated in qemu):
cd tools/testing/selftests/nci
make
./nci_dev
BUG: memory leak
unreferenced object 0xffff888107588000 (size 208):
comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] __alloc_skb+0x1da/0x290
[] nci_send_cmd+0xa3/0x350
[] nci_reset_req+0x6b/0xa0
[] __nci_request+0x90/0x250
[] nci_dev_up+0x217/0x5b0
[] nfc_
Red Hat
kernel: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
vendor_redhat·2025-12-30
CVE-2022-50854 kernel: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
kernel: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in virtual_nci_send(), otherwise kmemleak will report
memleak.
Steps for reproduction (simulated in qemu):
cd tools/testing/selftests/nci
make
./nci_dev
BUG: memory leak
unreferenced object 0xffff888107588000 (size 208):
comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] __alloc_skb+0x1da/0x290
[] nci_send_cmd+0xa3/0x350
[] nci_reset_req+0x6b/0xa0
[] __nci_request+0x90/0x250
[] nci_dev_up+0x217/0x5b0
[]
Debian
CVE-2022-50854: linux - In the Linux kernel, the following vulnerability has been resolved: nfc: virtua...
vendor_debian·2022
CVE-2022-50854 CVE-2022-50854: linux - In the Linux kernel, the following vulnerability has been resolved: nfc: virtua...
In the Linux kernel, the following vulnerability has been resolved: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send() skb should be free in virtual_nci_send(), otherwise kmemleak will report memleak. Steps for reproduction (simulated in qemu): cd tools/testing/selftests/nci make ./nci_dev BUG: memory leak unreferenced object 0xffff888107588000 (size 208): comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [] __alloc_skb+0x1da/0x290 [] nci_send_cmd+0xa3/0x350 [] nci_reset_req+0x6b/0xa0 [] __nci_request+0x90/0x250 [] nci_dev_up+0x217/0x5b0 [] nfc_dev_up+0x114/0x220 [] nfc_genl_dev_up+0x94/0xe0 [] genl_family_r
No detection rules found.
No public exploits indexed.
Wiz
CVE-2022-50854 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2022-50854 CVE-2022-50854 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2022-50854 :
Linux Debian vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in virtual_nci_send(), otherwise kmemleak will report
memleak.
Steps for reproduction (simulated in qemu):
cd tools/testing/selftests/nci
make
./nci_dev
BUG: memory leak
unreferenced object 0xffff888107588000 (size 208):
comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] __alloc_skb+0x1da/0x290
[] nci_send_cmd+0xa3/0x350
[] nci_reset_req+0x6b/0xa0
[] __nci_request+0x90/0x250
[] nci_dev_up+0x217/
Bugzilla
CVE-2022-50854 kernel: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
bugzilla·2025-12-30
CVE-2022-50854 CVE-2022-50854 kernel: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
CVE-2022-50854 kernel: nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
In the Linux kernel, the following vulnerability has been resolved:
nfc: virtual_ncidev: Fix memory leak in virtual_nci_send()
skb should be free in virtual_nci_send(), otherwise kmemleak will report
memleak.
Steps for reproduction (simulated in qemu):
cd tools/testing/selftests/nci
make
./nci_dev
BUG: memory leak
unreferenced object 0xffff888107588000 (size 208):
comm "nci_dev", pid 206, jiffies 4294945376 (age 368.248s)
hex dump (first 32 bytes):
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
backtrace:
[] __alloc_skb+0x1da/0x290
[] nci_send_cmd+0xa3/0x350
[] nci_reset_req+0x6b/0xa0
[] __nci_request+0x90/0x250
[] nci_dev
2025-12-30
Published