CVE-2022-50358

Source
https://cve.org/CVERecord?id=CVE-2022-50358
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50358.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-50358
Downstream
Related
Published
2025-09-17T14:56:10.688Z
Modified
2026-04-02T08:28:26.833415Z
Severity
  • 4.2 (Medium) CVSS_V3 - CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
brcmfmac: return error when getting invalid max_flowrings from dongle
Details

In the Linux kernel, the following vulnerability has been resolved:

brcmfmac: return error when getting invalid max_flowrings from dongle

When firmware hit trap at initialization, host will read abnormal maxflowrings number from dongle, and it will cause kernel panic when doing iowrite to initialize dongle ring. To detect this error at early stage, we directly return error when getting invalid maxflowrings(>256).

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50358.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
9e37f045d5e7f33450515f237c2f6f6bfee137dd
Fixed
3cc9299036bdb647408e11e41de3eb1ff6d428cd
Fixed
2e8bb402b060a6c22160de3d72cee057698177c8
Fixed
10c4b63d09a5b0ebf1b61af1dae7f25555cf58b6
Fixed
87f126b25fa8562196f0f4c0aa46a446026199bf
Fixed
200347eb3b2608cc8b54c13dd1d5e03809ba2eb2
Fixed
2aca4f3734bd717e04943ddf340d49ab62299a00

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50358.json"