Home

Description

In the Linux kernel, the following vulnerability has been resolved: ipmi: fix use after free in _ipmi_destroy_user() The intf_free() function frees the "intf" pointer so we cannot dereference it again on the next line.

PUBLISHED Reserved 2025-12-09 | Published 2025-12-09 | Updated 2025-12-09 | Assigner Linux

Product status

Default status
unaffected

f9d405a4bd6090ffbf3bba5e2da6b44c0e013cb3 (git) before 35ad87bfe330f7ef6a19f772223c63296d643172
affected

b642ced2cad496c32ae1f62b85fc395391190820 (git) before d23006f2a56e11a3103de0ca8b843bf7fd7d76fc
affected

cbb79863fc3175ed5ac506465948b02a893a8235 (git) before f29d127b372e1b7662397d92341d9f7de198ff99
affected

cbb79863fc3175ed5ac506465948b02a893a8235 (git) before bfce073089cb81482521c65061835aaa6d1a6cc0
affected

cbb79863fc3175ed5ac506465948b02a893a8235 (git) before f7fde441198a9ecb130c3ccec91ee2131d6998ee
affected

cbb79863fc3175ed5ac506465948b02a893a8235 (git) before 1fc9b20a7688000fcf4d7fbaa58e415a3cdda961
affected

cbb79863fc3175ed5ac506465948b02a893a8235 (git) before a92ce570c81dc0feaeb12a429b4bc65686d17967
affected

Default status
affected

5.5
affected

Any version before 5.5
unaffected

4.19.270 (semver)
unaffected

5.4.229 (semver)
unaffected

5.10.163 (semver)
unaffected

5.15.87 (semver)
unaffected

6.0.18 (semver)
unaffected

6.1.4 (semver)
unaffected

6.2 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/35ad87bfe330f7ef6a19f772223c63296d643172

git.kernel.org/...c/d23006f2a56e11a3103de0ca8b843bf7fd7d76fc

git.kernel.org/...c/f29d127b372e1b7662397d92341d9f7de198ff99

git.kernel.org/...c/bfce073089cb81482521c65061835aaa6d1a6cc0

git.kernel.org/...c/f7fde441198a9ecb130c3ccec91ee2131d6998ee

git.kernel.org/...c/1fc9b20a7688000fcf4d7fbaa58e415a3cdda961

git.kernel.org/...c/a92ce570c81dc0feaeb12a429b4bc65686d17967

cve.org (CVE-2022-50677)

nvd.nist.gov (CVE-2022-50677)

Download JSON