CVE-2022-50142

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
18/06/2025
Last modified:
19/11/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> intel_th: msu: Fix vmalloced buffers<br /> <br /> After commit f5ff79fddf0e ("dma-mapping: remove CONFIG_DMA_REMAP") there&amp;#39;s<br /> a chance of DMA buffer getting allocated via vmalloc(), which messes up<br /> the mmapping code:<br /> <br /> &gt; RIP: msc_mmap_fault [intel_th_msu]<br /> &gt; Call Trace:<br /> &gt; <br /> &gt; __do_fault<br /> &gt; do_fault<br /> ...<br /> <br /> Fix this by accounting for vmalloc possibility.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.2 (including) 5.4.211 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.5 (including) 5.10.137 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.15.61 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16 (including) 5.18.18 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.19 (including) 5.19.2 (excluding)