CVE-2022-50785

Linux Kernel 5.16-5.19.16, 5.20-6.0.2, 6.1 - Use-After-Free in FSI OCC Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: fsi: occ: Prevent use after free Use get_device and put_device in the open and close functions to make sure the device doesn't get freed while a file descriptor is open. Also, lock around the freeing of the device buffer and check the buffer before using it in the submit function.

Scores

EPSS 0.0016
EPSS Percentile 5.8%

Details

Status published
Products (10)
linux/Kernel 5.16.0 - 5.19.17linux
linux/Kernel 5.20.0 - 6.0.3linux
Linux/Linux < 5.16
Linux/Linux 008d3825a805557464c5e75f9eb806a3aa2f5e6d - 1d5ad0a874ddfcee9f932f54b1d34cbe8b9ddcfe
Linux/Linux 008d3825a805557464c5e75f9eb806a3aa2f5e6d - 3593e8efc9f0dac6be70bd5c964eadaa86bf2713
Linux/Linux 008d3825a805557464c5e75f9eb806a3aa2f5e6d - d3e1e24604031b0d83b6c2d38f54eeea265cfcc0
Linux/Linux 5.16
Linux/Linux 5.19.17 - 5.19.*
Linux/Linux 6.0.3 - 6.0.*
Linux/Linux 6.1
Published Dec 30, 2025
Tracked Since Feb 18, 2026