Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2022-50395— integrity: Fix memory leakage in keyring allocation error path

AI Predicted 5.5 Difficulty: Easy EPSS 0.15% · P4

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 14

VendorProductVersion RangeStatus
LinuxLinux2b6aa412ff23a02ac777ad307249c60a839cfd25< 9b7c44885a07c5ee7f9bf3aa3c9c72fb110c8d22affected
2b6aa412ff23a02ac777ad307249c60a839cfd25< 3bd737289c26be3cee4b9afaf61ef784a2af9d6eaffected
2b6aa412ff23a02ac777ad307249c60a839cfd25< 29d6c69ba4b96a1de0376e44e5f8b38b13ec8803affected
2b6aa412ff23a02ac777ad307249c60a839cfd25< 57e49ad12f8f5df0c48e1710c54b147a05a10c32affected
2b6aa412ff23a02ac777ad307249c60a839cfd25< c591c48842f08d30ec6b8416757831985ed9a315affected
2b6aa412ff23a02ac777ad307249c60a839cfd25< 39419ef7af0916cc3620ecf1ed42d29659109bf3affected
4.12affected
< 4.12unaffected
… +6 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-50395

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
integrity: Fix memory leakage in keyring allocation error path
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: integrity: Fix memory leakage in keyring allocation error path Key restriction is allocated in integrity_init_keyring(). However, if keyring allocation failed, it is not freed, causing memory leaks.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于密钥限制分配错误路径中未释放内存,可能导致内存泄漏。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 2b6aa412ff23a02ac777ad307249c60a839cfd25 ~ 9b7c44885a07c5ee7f9bf3aa3c9c72fb110c8d22 -
LinuxLinux 4.12 -

II. Public POCs for CVE-2022-50395

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-50395

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-09-18 · 121 CVEs total

CVE-2022-504109.8 CRITICALNFSD: Protect against send buffer overflow in NFSv2 READ
CVE-2022-504019.8 CRITICALnfsd: under NFSv4.1, fix double svc_xprt_put on rpc_create failure
CVE-2023-533829.8 CRITICALnet/smc: Reset connection when trying to use SMCRv2 fails.
CVE-2022-504198.8 HIGHBluetooth: hci_sysfs: Fix attempting to call device_add multiple times
CVE-2023-534318.8 HIGHscsi: ses: Handle enclosure with just a primary component gracefully
CVE-2023-534328.8 HIGHfirewire: net: fix use after free in fwnet_finish_incoming_packet()
CVE-2022-504138.8 HIGHwifi: mac80211: fix use-after-free
CVE-2023-533748.8 HIGHBluetooth: hci_conn: fail SCO/ISO via hci_conn_failed if ACL gone early
CVE-2022-503868.8 HIGHBluetooth: L2CAP: Fix user-after-free
CVE-2023-533728.2 HIGHsctp: fix a potential overflow in sctp_ifwdtsn_skip
CVE-2023-533867.8 HIGHBluetooth: Fix potential use-after-free when clear keys
CVE-2023-533947.8 HIGHnet/mlx5e: xsk: Fix crash on regular rq reactivation
CVE-2022-504177.8 HIGHdrm/panfrost: Fix GEM handle creation ref-counting
CVE-2023-533877.8 HIGHscsi: ufs: core: Fix device management cmd timeout flow
CVE-2023-533737.8 HIGHcrypto: seqiv - Handle EBUSY correctly
CVE-2023-533887.8 HIGHdrm/mediatek: Clean dangling pointer on bind error path
CVE-2023-533777.8 HIGHcifs: prevent use-after-free by freeing the cfile later
CVE-2023-533987.8 HIGHmlx5: fix possible ptp queue fifo use-after-free
CVE-2023-533787.8 HIGHdrm/i915/dpt: Treat the DPT BO as a framebuffer
CVE-2023-534267.8 HIGHxsk: Fix xsk_diag use-after-free error during socket cleanup

Showing top 20 of 121 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-50395

No comments yet


Leave a comment