CVE-2022-50248
- EPSS 0.16%
- Veröffentlicht 15.09.2025 14:02:07
- Zuletzt bearbeitet 04.08.2026 10:18:08
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix double free on tx path. We see kernel crashes and lockups and KASAN errors related to ax210 firmware crashes. One of the KASAN dumps pointed at the tx path...
CVE-2022-50246
- EPSS 0.16%
- Veröffentlicht 15.09.2025 14:02:04
- Zuletzt bearbeitet 24.11.2025 19:57:47
In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpci: fix of node refcount leak in tcpci_register_port() I got the following report while doing device(mt6370-tcpc) load test with CONFIG_OF_UNITTEST and CONFIG_OF_DYN...
CVE-2022-50245
- EPSS 0.17%
- Veröffentlicht 15.09.2025 14:02:03
- Zuletzt bearbeitet 24.11.2025 19:58:44
In the Linux kernel, the following vulnerability has been resolved: rapidio: fix possible UAF when kfifo_alloc() fails If kfifo_alloc() fails in mport_cdev_open(), goto err_fifo and just free priv. But priv is still in the chdev->file_list, then li...
CVE-2022-50244
- EPSS 0.16%
- Veröffentlicht 15.09.2025 14:02:01
- Zuletzt bearbeitet 24.11.2025 19:59:03
In the Linux kernel, the following vulnerability has been resolved: cxl: fix possible null-ptr-deref in cxl_pci_init_afu|adapter() If device_register() fails in cxl_pci_afu|adapter(), the device is not added, device_unregister() can not be called i...
CVE-2022-50243
- EPSS 0.16%
- Veröffentlicht 15.09.2025 14:01:52
- Zuletzt bearbeitet 04.08.2026 10:18:08
In the Linux kernel, the following vulnerability has been resolved: sctp: handle the error returned from sctp_auth_asoc_init_active_key When it returns an error from sctp_auth_asoc_init_active_key(), the active_key is actually not updated. The old ...
CVE-2022-50242
- EPSS 0.16%
- Veröffentlicht 15.09.2025 14:01:50
- Zuletzt bearbeitet 24.11.2025 20:05:04
In the Linux kernel, the following vulnerability has been resolved: drivers: net: qlcnic: Fix potential memory leak in qlcnic_sriov_init() If vp alloc failed in qlcnic_sriov_init(), all previously allocated vp needs to be freed.
CVE-2024-58240
- EPSS 0.32%
- Veröffentlicht 28.08.2025 10:15:31
- Zuletzt bearbeitet 19.08.2026 17:18:35
In the Linux kernel, the following vulnerability has been resolved: tls: separate no-async decryption request handling from async If we're not doing async, the handling is much simpler. There's no reference counting, we just need to wait for the co...
CVE-2024-58239
- EPSS 0.34%
- Veröffentlicht 22.08.2025 13:01:17
- Zuletzt bearbeitet 04.08.2026 11:22:40
In the Linux kernel, the following vulnerability has been resolved: tls: stop recv() if initial process_rx_list gave us non-DATA If we have a non-DATA record on the rx_list and another record of the same type still on the queue, we will end up merg...
CVE-2022-50229
- EPSS 0.21%
- Veröffentlicht 18.06.2025 11:04:06
- Zuletzt bearbeitet 19.11.2025 12:57:41
In the Linux kernel, the following vulnerability has been resolved: ALSA: bcd2000: Fix a UAF bug on the error path of probing When the driver fails in snd_card_register() at probe time, it will free the 'bcd2k->midi_out_urb' before killing it, whic...
CVE-2022-50228
- EPSS 0.23%
- Veröffentlicht 18.06.2025 11:04:05
- Zuletzt bearbeitet 19.11.2025 12:57:50
In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Don't BUG if userspace injects an interrupt with GIF=0 Don't BUG/WARN on interrupt injection due to GIF being cleared, since it's trivial for userspace to force the situa...