Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50101

21
FAUCET Score

CVE-2022-50101 is a high-severity vulnerability in the Linux kernel's vt8623fb driver, affecting the 'linux_kernel' product. It allows a local attacker with low privileges to cause a denial of service, escalate privileges, or disclose sensitive information by providing an improperly sized 'screen_size' value, leading to an out-of-bounds write during a memset_io() operation. The vulnerability has a CVSS v3.1 score of 7.8 (HIGH) and a FAUCET Risk Score of 74/100. There is currently no public exploit code available, nor is there evidence of active exploitation or significant community discussion.

Impacted Technologies

VendorProductVersion(s)CPE
>= 2.6.22, < 4.14.291CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.15, < 4.19.256CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.211CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.137CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.61CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.22%
Probability of exploitation in next 30 days
EPSS Percentile
12.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0022 is in the 42nd percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2022-50101

kernel: video: fbdev: vt8623fb: Check the size of screen before memset_io()

Jun 18, 2025

References

git.kernel.org / stable/c/4a3cef1eaced13ba9b55381d46bfad937a3dac2c
Patch
git.kernel.org / stable/c/52ad9bfeb8a0e62de30de6d39e8a49a72dd78150
Patch
git.kernel.org / stable/c/73280a184aa2e1a625ce54ce761042955cc79cd0
Patch
git.kernel.org / stable/c/b17caec5127bba6f90af92bcc85871df54548ac0
Patch
git.kernel.org / stable/c/bd8269e57621e5b38cc0b4bd2fa02e85c9f2a441
Patch
git.kernel.org / stable/c/c7a3f41e4b133d4dd25bc996b69039b19a34d69d
Patch
git.kernel.org / stable/c/d71528ccdc7ae8d7500d414091d27805c51407a2
Patch
git.kernel.org / stable/c/ec0754c60217248fa77cc9005d66b2b55200ac06
Patch