#VU115611 Resource management error in Linux kernel - CVE-2022-50298
Published: September 16, 2025 / Updated: September 22, 2025
Vulnerability identifier: #VU115611
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2022-50298
CWE-ID: CWE-399
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerable software:
Linux kernel
Linux kernel
Software vendor:
Linux Foundation
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to resource management error within the qcom_slim_ngd_ctrl_probe() function in drivers/slimbus/qcom-ngd-ctrl.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's repository.
External links
- https://git.kernel.org/stable/c/0c76110a3129c8d56d8fb7b6270dcc0c5c2f1a41
- https://git.kernel.org/stable/c/16f14551d0df9e7cd283545d7d748829594d912f
- https://git.kernel.org/stable/c/1d567179f27788925dc90fe5e905cdabfce7d190
- https://git.kernel.org/stable/c/ef5c42e6eb29a86abbcd4b2fd427e5194e51053c
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.0.3