-

CVE-2022-50404

In the Linux kernel, the following vulnerability has been resolved:

fbdev: fbcon: release buffer when fbcon_do_set_font() failed

syzbot is reporting memory leak at fbcon_do_set_font() [1], for
commit a5a923038d70 ("fbdev: fbcon: Properly revert changes when
vc_resize() failed") missed that the buffer might be newly allocated
by fbcon_set_font().

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 88ec6d11052da527eb9268831e7a9bc5bbad02f6
Version ebd6f886aa2447fcfcdce5450c9e1028e1d681bb
Status affected
Version < 06926607b9fddf7ce8017493899ce6eb7e79a123
Version a5a923038d70d2d4a86cb4e3f32625a5ee6e7e24
Status affected
Version < a609bfc1e644a8467cb31945ed1488374ebdc013
Version a5a923038d70d2d4a86cb4e3f32625a5ee6e7e24
Status affected
Version < 3c3bfb8586f848317ceba5d777e11204ba3e5758
Version a5a923038d70d2d4a86cb4e3f32625a5ee6e7e24
Status affected
Version f08ccb792d3eaf1dc62d8cbf6a30d6522329f660
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.0
Status affected
Version < 6.0
Version 0
Status unaffected
Version <= 5.15.*
Version 5.15.86
Status unaffected
Version <= 6.0.*
Version 6.0.16
Status unaffected
Version <= 6.1.*
Version 6.1.2
Status unaffected
Version <= *
Version 6.2
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.046
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String