Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2022-50351— cifs: Fix xid leak in cifs_create()

AI Predicted 5.5 Difficulty: Moderate EPSS 0.14% · P4

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 8

VendorProductVersion RangeStatus
LinuxLinux087f757b0129850c99cc9116df4909dac1bce871< 593d877c39aa9f3fe1a4b5b022492886d7d700ecaffected
087f757b0129850c99cc9116df4909dac1bce871< 92aa09c86ef297976a3c27c6574c0839418dc2c4affected
087f757b0129850c99cc9116df4909dac1bce871< fee0fb1f15054bb6a0ede452acb42da5bef4d587affected
5.13affected
< 5.13unaffected
5.15.76≤ 5.15.*unaffected
6.0.6≤ 6.0.*unaffected
6.1≤ *unaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-50351

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
cifs: Fix xid leak in cifs_create()
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: cifs: Fix xid leak in cifs_create() If the cifs already shutdown, we should free the xid before return, otherwise, the xid will be leaked.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于cifs_create函数在cifs关闭时未释放xid,可能导致xid泄漏。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 087f757b0129850c99cc9116df4909dac1bce871 ~ 593d877c39aa9f3fe1a4b5b022492886d7d700ec -
LinuxLinux 5.13 -

II. Public POCs for CVE-2022-50351

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-50351

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-09-16 · 115 CVEs total

CVE-2025-398278.8 HIGHnet: rose: include node references in rose_neigh refcount
CVE-2025-398268.8 HIGHnet: rose: convert 'use' field to refcount_t
CVE-2025-398068.8 HIGHHID: multitouch: fix slab out-of-bounds access in mt_report_fixup()
CVE-2025-398098.4 HIGHHID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd ICRS/ISUB length
CVE-2025-398367.8 HIGHefi: stmm: Fix incorrect buffer allocation method
CVE-2025-398107.8 HIGHbnxt_en: Fix memory corruption when FW resources change during ifdown
CVE-2025-398157.8 HIGHRISC-V: KVM: fix stack overrun when loading vlenb
CVE-2025-398187.8 HIGHHID: intel-thc-hid: intel-thc: Fix incorrect pointer arithmetic in I2C regs save
CVE-2025-398257.8 HIGHsmb: client: fix race with concurrent opens in rename(2)
CVE-2025-398217.8 HIGHperf: Avoid undefined behavior from stopping/starting inactive events
CVE-2025-398177.1 HIGHefivarfs: Fix slab-out-of-bounds in efivarfs_d_compare
CVE-2022-50349misc: tifm: fix possible memory leak in tifm_7xx1_switch_media()
CVE-2022-50342floppy: Fix memory leak in do_floppy_init()
CVE-2022-50344ext4: fix null-ptr-deref in ext4_write_info
CVE-2022-50343rapidio: fix possible name leaks when rio_add_device() fails
CVE-2022-50346ext4: init quota for 'old.inode' in 'ext4_rename'
CVE-2022-50348nfsd: Fix a memory leak in an error handling path
CVE-2022-50352net: hns: fix possible memory leak in hnae_ae_register()
CVE-2022-50350scsi: target: iscsi: Fix a race condition between login_work and the login thread
CVE-2022-50347mmc: rtsx_usb_sdmmc: fix return value check of mmc_add_host()

Showing top 20 of 115 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-50351

No comments yet


Leave a comment