vulnerability
Ubuntu: (CVE-2022-50055): linux vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:S/C:N/I:N/A:C) | Jun 18, 2025 | Jun 26, 2025 | Nov 14, 2025 |
Description
In the Linux kernel, the following vulnerability has been resolved:
iavf: Fix adminq error handling
iavf_alloc_asq_bufs/iavf_alloc_arq_bufs allocates with dma_alloc_coherent
memory for VF mailbox.
Free DMA regions for both ASQ and ARQ in case error happens during
configuration of ASQ/ARQ registers.
Without this change it is possible to see when unloading interface:
74626.583369: dma_debug_device_change: device driver has pending DMA allocations while released from device [count=32]
One of leaked entries details: [device address=0x0000000b27ff9000] [size=4096 bytes] [mapped with DMA_BIDIRECTIONAL] [mapped as coherent]
Solutions
References
- CVE-2022-50055
- https://attackerkb.com/topics/CVE-2022-50055
- URL-https://git.kernel.org/stable/c/35c63581fdefdcbaeae8cded18908523252353ad
- URL-https://git.kernel.org/stable/c/419831617ed349992c84344dbd9e627f9e68f842
- URL-https://git.kernel.org/stable/c/4fe80492d53971d9a49f39f3c86d2d67c6f3638a
- URL-https://git.kernel.org/stable/c/dab6b551f5ba4c79a0dd4970dd8533c37a7b100f
- URL-https://git.kernel.org/stable/c/ff289f2be5899efd0e897d2b434a78e36df2c69b
- URL-https://www.cve.org/CVERecord?id=CVE-2022-50055
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.