CVE-2022-50786
Last modified
CVE-2022-50786 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: media: s5p-mfc: Clear workbit to handle error condition During error on CLOSE_INSTANCE command, ctx_work_bits was not getting cleared. During consequent mfc execution NULL pointer dereferencing of this context led to kernel panic. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: media: s5p-mfc: Clear workbit to handle error condition During error on CLOSE_INSTANCE command, ctx_work_bits was not getting cleared. During consequent mfc execution NULL pointer dereferencing of this context led to kernel panic. This patch fixes this issue by making sure to clear ctx_work_bits always.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < 12242bd13ce68acd571b2cce6ab302e154e8a4ee; >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < 640075400c7c577b0f5369b935e22a588773fafa; >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < 8ff64edf9d16e8c277dcc8189794763624e6b4b8; >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < ff27800c0a6d81571671b33f696109804d015409; >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < 09c1fbbe532758e4046c20829f4c0c50b99332dc; >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < bd1b72f0c39a0d791a087b4e643701a48328ba8e; >= 818cd91ab8c6e42c2658c8e61f8462637c6f586b, < d3f3c2fe54e30b0636496d842ffbb5ad3a547f9b |
| Linux | Linux | 3.16 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2022-50786?
How severe is CVE-2022-50786?
How do I fix CVE-2022-50786?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-50780In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2022-50781In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50782In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50783In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50784In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50785In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2022-50787SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x contains an unaut…7.2
- CVE-2022-50788SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an information …7.5
- CVE-2022-50789SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains a command injec…8.5
- CVE-2022-50790SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below contain…7.5
- CVE-2022-50791SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains a conditional c…8.5
- CVE-2022-50792SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below contain…8.7
Are you affected by CVE-2022-50786?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
