CVE-2022-50884NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 84.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: drm: Prevent drm_copy_field() to attempt copying a NULL pointer There are some struct drm_driver fields that are required by drivers since drm_copy_field() attempts to copy them to user-space via DRM_IOCTL_VERSION. But it can be possible that a driver has a bug and did not set some of the fields, which leads to drm_copy_field() attempting to copy a NULL pointer: [ +10.395966] Unable to handle kernel access to user memory out

Affected Packages4 packages

Linuxlinux/linux_kernel2.6.164.9.331+7
Debianlinux/linux_kernel< 5.10.158-1+3
CVEListV5linux/linux22eae947bf76e236ba972f2f11cfd1b083b736add213914386a0ede76a4549b41de30192fb92c595+9
debiandebian/linux< linux 6.0.3-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-8j2h-xvv4-99jg: In the Linux kernel, the following vulnerability has been resolved: drm: Prevent drm_copy_field() to attempt copying a NULL pointer There are some s2025-12-30
OSV
drm: Prevent drm_copy_field() to attempt copying a NULL pointer2025-12-30
OSV
CVE-2022-50884: In the Linux kernel, the following vulnerability has been resolved: drm: Prevent drm_copy_field() to attempt copying a NULL pointer There are some str2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: drm: Prevent drm_copy_field() to attempt copying a NULL pointer2025-12-30
Debian
CVE-2022-50884: linux - In the Linux kernel, the following vulnerability has been resolved: drm: Preven...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50884 Impact, Exploitability, and Mitigation Steps | Wiz