cbcvebase.
CVE-2022-50855
published 2025-12-30

CVE-2022-50855: In the Linux kernel, the following vulnerability has been resolved: bpf: prevent leak of lsm program after failed attach In [0], we added the ability to…

PriorityP421low3.3
EPSS
0.21%
10.7th percentile
In the Linux kernel, the following vulnerability has been resolved: bpf: prevent leak of lsm program after failed attach In [0], we added the ability to bpf_prog_attach LSM programs to cgroups, but in our validation to make sure the prog is meant to be attached to BPF_LSM_CGROUP, we return too early if the check fails. This results in lack of decrementing prog's refcnt (through bpf_prog_put) leaving the LSM program alive past the point of the expected lifecycle. This fix allows for the decrement to take place. [0] https://lore.kernel.org/all/[email protected]/

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= 69fd337a975c7e690dfe49d9cb4fe5ba1e6db44e < 82b39df5ddb298daaf6dc504032ff7eb027fa10682b39df5ddb298daaf6dc504032ff7eb027fa106
linuxlinux>= 69fd337a975c7e690dfe49d9cb4fe5ba1e6db44e < 6a1504dd36cd9a0a69250d61da8bdb17b29f1fe86a1504dd36cd9a0a69250d61da8bdb17b29f1fe8
linuxlinux>= 69fd337a975c7e690dfe49d9cb4fe5ba1e6db44e < e89f3edffb860a0f54a9ed16deadb7a4a1fa3862e89f3edffb860a0f54a9ed16deadb7a4a1fa3862
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 6.0.0 < 6.0.166.0.16
linuxlinux_kernel>= 6.1.0 < 6.1.26.1.2
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.