« Volver al listado

CVE-2022-50642

Estado: AplazadaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

platform/chrome: cros_ec_typec: zero out stale pointers

`cros_typec_get_switch_handles` allocates four pointers when obtaining type-c switch handles. These pointers are all freed if failing to obtain any of them; therefore, pointers in `port` become stale. The stale pointers eventually cause use-after-free or double free in later code paths. Zeroing out all pointer fields after freeing to eliminate these stale pointers.

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2022-50642",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "f28adb41dab4a2795fd959750df57adffd2bb0be",
              "lessThan": "0ceadb5a3e45f1b81cf54bd496b40a5e50b6bd40",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "f28adb41dab4a2795fd959750df57adffd2bb0be",
              "lessThan": "b610758bb3e0674644c1255cdafc2f46b7e05ff9",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "f28adb41dab4a2795fd959750df57adffd2bb0be",
              "lessThan": "6613f36a2fa5c69e528bccba8b3d831f759dad2f",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "f28adb41dab4a2795fd959750df57adffd2bb0be",
              "lessThan": "9a8aadcf0b459c1257b9477fd6402e1d5952ae07",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/platform/chrome/cros_ec_typec.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "5.9"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "5.9",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "5.15.86",
              "versionType": "semver",
              "lessThanOrEqual": "5.15.*"
            },
            {
              "status": "unaffected",
              "version": "6.0.16",
              "versionType": "semver",
              "lessThanOrEqual": "6.0.*"
            },
            {
              "status": "unaffected",
              "version": "6.1.2",
              "versionType": "semver",
              "lessThanOrEqual": "6.1.*"
            },
            {
              "status": "unaffected",
              "version": "6.2",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/platform/chrome/cros_ec_typec.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2025-12-09T01:16:46.693",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/0ceadb5a3e45f1b81cf54bd496b40a5e50b6bd40",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/6613f36a2fa5c69e528bccba8b3d831f759dad2f",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/9a8aadcf0b459c1257b9477fd6402e1d5952ae07",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/b610758bb3e0674644c1255cdafc2f46b7e05ff9",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Deferred",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nplatform/chrome: cros_ec_typec: zero out stale pointers\n\n`cros_typec_get_switch_handles` allocates four pointers when obtaining\ntype-c switch handles. These pointers are all freed if failing to obtain\nany of them; therefore, pointers in `port` become stale. The stale\npointers eventually cause use-after-free or double free in later code\npaths. Zeroing out all pointer fields after freeing to eliminate these\nstale pointers."
    }
  ],
  "lastModified": "2026-06-17T05:23:55.170",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}