CVE-2022-50540

MEDIUM

Linux Kernel 5.17-5.19.16, 5.20-6.0.2, 6.1+ - Denial of Service via DMA Engine Slave Config Size Mismatch

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: dmaengine: qcom-adm: fix wrong sizeof config in slave_config Fix broken slave_config function that uncorrectly compare the peripheral_size with the size of the config pointer instead of the size of the config struct. This cause the crci value to be ignored and cause a kernel panic on any slave that use adm driver. To fix this, compare to the size of the struct and NOT the size of the pointer.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 4.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (11)
linux/Kernel 5.17.0 - 5.19.17linux
linux/Kernel 5.20.0 - 6.0.3linux
Linux/Linux < 5.17
Linux/Linux 03de6b273805b3c552ff158f8688555937375926 - 7490274b41a432824f7df5071ace3df2ab59caa7
Linux/Linux 03de6b273805b3c552ff158f8688555937375926 - 7c8765308371be30f50c1b5b97618b731514b207
Linux/Linux 03de6b273805b3c552ff158f8688555937375926 - f1dd45a6585a1689e1e8906b3f9e302b9d40c715
Linux/Linux 5.17
Linux/Linux 5.19.17 - 5.19.*
Linux/Linux 6.0.3 - 6.0.*
Linux/Linux 6.1
... and 1 more
Published Oct 07, 2025
Tracked Since Feb 18, 2026