CVE-2022-50732

HIGHCVSS 8.8/10EPSS 0.24%

Last modified

CVE-2022-50732 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: staging: rtl8192u: Fix use after free in ieee80211_rx() We cannot dereference the "skb" pointer after calling ieee80211_monitor_rx(), because it is a use after free.. EPSS estimates a 0.24% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8192u: Fix use after free in ieee80211_rx() We cannot dereference the "skb" pointer after calling ieee80211_monitor_rx(), because it is a use after free.

Metrics

CVSS 3.1
8.8/10

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
0.24%

15.5th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < 9c03db0ec84b7964a11b20706665c99a5fead332; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < fdc62d31d50e4ce5d8f363fcb8299ba0e00ee6fd; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < a0df8d44b555ae09729d6533fd4532977563c7b9; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < 288ada16a93aab5aa2ebea8190aafdb35b716854; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < daa8045a991363ccdae5615d170f35aa1135e7a7; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < b0aaec894a909c88117c8bda6c7c9b26cf7c744b; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < de174163c0d319ff06d622e79130a0017c8f5a6e; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < 73df1172bbcc8d45cd28e3b1a9ca2edb2f9f7ce6; >= 8fc8598e61f6f384f3eaf1d9b09500c12af47b37, < bcc5e2dcf09089b337b76fc1a589f6ff95ca19ac
LinuxLinux2.6.33

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2022-50732?
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8192u: Fix use after free in ieee80211_rx() We cannot dereference the "skb" pointer after calling ieee80211_monitor_rx(), because it is a use after free.
How severe is CVE-2022-50732?
CVE-2022-50732 has a CVSS score of 8.8/10 (HIGH severity). The EPSS model estimates a 0.24% probability of exploitation in the next 30 days.
How do I fix CVE-2022-50732?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2022

Are you affected by CVE-2022-50732?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST