IT

Tracker / CVE-2022-50169

CVE-2022-50169

High 7.1

In the Linux kernel, the following vulnerability has been resolved: wifi: wil6210: debugfs: fix info leak in wil_write_file_wmi() The simple_write_to_buffer() function will succeed if even a single byte is initialized. However, we need to initialize the whole buffer to prevent information leaks. Just use memdup_user().

Affected products and versions

linux linux_kernel · 3.17 → 4.14.291
linux linux_kernel · 4.15 → 4.19.256
linux linux_kernel · 4.20 → 5.4.211
linux linux_kernel · 5.11 → 5.15.61
linux linux_kernel · 5.16 → 5.18.18
linux linux_kernel · 5.19 → 5.19.2
linux linux_kernel · 5.5 → 5.10.137

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References