CVE-2022-50440
BaseFortify
Publication date: 2025-10-01
Last updated on: 2025-10-02
Assigner: kernel.org
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| linux | linux_kernel | From 5.15.160 (inc) to 5.16 (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in the Linux kernel's drm/vmwgfx component involves improper validation of the box size used for copying a snooped cursor image. Specifically, invalid userspace DMA surface copies could overflow the memcpy operation from the surface to the snooped image, potentially causing crashes. The fix involves validating the dimensions of the copy box against the expected size of the snooped cursor to prevent overflow.
How can this vulnerability impact me? :
This vulnerability can lead to crashes in the Linux kernel due to buffer overflow during the copying of the snooped cursor image. Such crashes could cause system instability or denial of service, impacting the reliability of systems using the affected drm/vmwgfx component.