CVE-2022-50677 is a use-after-free vulnerability in the Linux kernel's IPMI subsystem, specifically within the _ipmi_destroy_user() function, where the 'intf' pointer is freed and then improperly dereferenced. While a CVSS score is not provided, its FAUCET Risk Score of 7/100 suggests a low severity, and its EPSS score indicates a very low likelihood of exploitation. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 4.19.92, < 4.19.270CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.4.7, < 5.4.229CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.