CVE-2022-50318

Advisory lineage Upstream: 0 Downstream: 12
Analyzed
Published: 15 Sept 2025, 14:48
Last modified:23 May 2026, 15:24

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.02% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

15 Sept 2025, 14:48
Published
Vulnerability first disclosed
23 May 2026, 15:24
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel/uncore: Fix reference count leak in hswep_has_limit_sbox() pci_get_device() will increase the reference count for the returned 'dev'. We need to call pci_dev_put() to decrease the reference count. Since 'dev' is only used in pci_read_config_dword(), let's add pci_dev_put() right after it.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.02% Percentile: 6%

Affected Systems

  • linuxlinux

    ≥ a8e87042482fd2d31c5cee62875b2ae75759ae8b, < 5a96c10a56037db006ba6769307a9731cf6073be | ≥ 319a06e58ed7f1443f7133c05513de470f90628d, < e293263248f25c6b8aa1caf7c1103d40aa03311e | ≥ 6f8315e5d9511ed1cf28ee2afbc9f89ff693de7b, < c0539d5d474ee6fa4ebc41f927a0f98f81244f25 | ≥ 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5, < 3485f197518061371568f842405159aa9e4df551 | ≥ 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5, < 48f32b9a74e2ac8e854bb87bfefdbc745125a123 | ≥ 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5, < bd66877c0b3b42eed0ecee0bd2a2a505c1e54177 | ≥ 9d480158ee86ad606d3a8baaf81e6b71acbfd7d5, < 1ff9dd6e7071a561f803135c1d684b13c7a7d01d | d2c79105a90323a2a93484c85f9ac419ae9b183d | ≥ 4.19.189, < 4.19.270 | ≥ 5.4.115, < 5.4.229 | ≥ 5.10.33, < 5.10.163 | ≥ 5.11.17, < 5.12 | 5.12

  • linuxlinux_kernel

    ≥ 4.19.189, < 4.19.270 | ≥ 5.4.115, < 5.4.229 | ≥ 5.10.33, < 5.10.163 | ≥ 5.11.17, < 5.12 | ≥ 5.12.1, < 5.15.86 | ≥ 5.16, < 6.0.16 | ≥ 6.1, < 6.1.2 | 5.12

References (7)