U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2022-50087 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scpi: Ensure scpi_info is not assigned if the probe fails When scpi probe fails, at any point, we need to ensure that the scpi_info is not set and will remain NULL until the probe succeeds. If it is not taken care, then it could result use-after-free as the value is exported via get_scpi_ops() and could refer to a memory allocated via devm_kzalloc() but freed when the probe fails.


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://git.kernel.org/stable/c/08272646cd7c310642c39b7f54348fddd7987643 kernel.org
https://git.kernel.org/stable/c/0c29e149b6bb498778ed8a1c9597b51acfba7856 kernel.org
https://git.kernel.org/stable/c/18048cba444a7c41dbf42c180d6b46606fc24c51 kernel.org
https://git.kernel.org/stable/c/4f2d7b46d6b53c07f44a4f8f8f4438888f0e9e87 kernel.org
https://git.kernel.org/stable/c/5aa558232edc30468d1f35108826dd5b3ffe978f kernel.org
https://git.kernel.org/stable/c/689640efc0a2c4e07e6f88affe6d42cd40cc3f85 kernel.org
https://git.kernel.org/stable/c/87c4896d5dd7fd9927c814cf3c6289f41de3b562 kernel.org

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2022-50087
NVD Published Date:
06/18/2025
NVD Last Modified:
06/18/2025
Source:
kernel.org