CVE-2022-50440

Source
https://cve.org/CVERecord?id=CVE-2022-50440
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50440.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-50440
Downstream
Related
Published
2025-10-01T11:42:16.567Z
Modified
2026-04-02T08:28:30.972238Z
Summary
drm/vmwgfx: Validate the box size for the snooped cursor
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/vmwgfx: Validate the box size for the snooped cursor

Invalid userspace dma surface copies could potentially overflow the memcpy from the surface to the snooped image leading to crashes. To fix it the dimensions of the copybox have to be validated against the expected size of the snooped cursor.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50440.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
2ac863719e518ae1a8f328849e64ea26a222f079
Fixed
ee8d31836cbe7c26e207bfa0a4a726f0a25cfcf6
Fixed
50d177f90b63ea4138560e500d92be5e4c928186
Fixed
6b4e70a428b5a11f56db94047b68e144529fe512
Fixed
94b283341f9f3f0ed56a360533766377a01540e0
Fixed
439cbbc1519547f9a7b483f0de33b556ebfec901
Fixed
6948e570f54f2044dd4da444b10471373a047eeb
Fixed
4d54d11b49860686331c58a00f733b16a93edfc4
Fixed
622d527decaac0eb65512acada935a0fdc1d0202
Fixed
4cf949c7fafe21e085a4ee386bb2dade9067316e

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50440.json"