CVE-2022-50575

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/10/2025
Last modified:
22/10/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> xen/privcmd: Fix a possible warning in privcmd_ioctl_mmap_resource()<br /> <br /> As &amp;#39;kdata.num&amp;#39; is user-controlled data, if user tries to allocate<br /> memory larger than(&gt;=) MAX_ORDER, then kcalloc() will fail, it<br /> creates a stack trace and messes up dmesg with a warning.<br /> <br /> Call trace:<br /> -&gt; privcmd_ioctl<br /> --&gt; privcmd_ioctl_mmap_resource<br /> <br /> Add __GFP_NOWARN in order to avoid too large allocation warning.<br /> This is detected by static analysis using smatch.

Impact