cbcvebase.
CVE-2022-50877
published 2025-12-30

CVE-2022-50877: In the Linux kernel, the following vulnerability has been resolved: net: broadcom: bcm4908_enet: update TX stats after actual transmission Queueing packets…

PriorityP421medium5.3
EPSS
0.17%
6.9th percentile
In the Linux kernel, the following vulnerability has been resolved: net: broadcom: bcm4908_enet: update TX stats after actual transmission Queueing packets doesn't guarantee their transmission. Update TX stats after hardware confirms consuming submitted data. This also fixes a possible race and NULL dereference. bcm4908_enet_start_xmit() could try to access skb after freeing it in the bcm4908_enet_poll_tx().

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.7-1 (bookworm)linux 6.0.7-1 (bookworm)
linuxlinux
linuxlinux>= 4feffeadbcb2e5b11cbbf191a33c245b74a5837b < c9589e18a60c55c76772a38117ef9a16b942e56bc9589e18a60c55c76772a38117ef9a16b942e56b
linuxlinux>= 4feffeadbcb2e5b11cbbf191a33c245b74a5837b < 2adedc80faec243ede55355e57142110d6f46e082adedc80faec243ede55355e57142110d6f46e08
linuxlinux>= 4feffeadbcb2e5b11cbbf191a33c245b74a5837b < ef3556ee16c68735ec69bd08df41d1cd83b14ad3ef3556ee16c68735ec69bd08df41d1cd83b14ad3
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 0 < 6.0.7-16.0.7-1
linuxlinux_kernel>= 5.12.0 < 5.15.775.15.77
linuxlinux_kernel>= 5.16.0 < 6.0.76.0.7
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.