PT-2025-26095 · Linux+2 · Linux Kernel+2

Published

2025-06-18

·

Updated

2025-07-28

·

CVE-2022-50169

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A fix has been applied to the Linux kernel to address an information leak issue in the wil write file wmi() function. The problem occurred because the simple write to buffer() function considered the operation successful even if only a single byte was initialized, which could lead to information leaks. To resolve this, the memdup user() function is used to ensure the entire buffer is initialized.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-50169
SUSE-SU-2025:02264-1
SUSE-SU-2025:02308-1
SUSE-SU-2025:02320-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02308-1
SUSE-SU-2025_02537-1

Affected Products

Astra Linux
Linux Kernel
Suse