Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50677

11
FAUCET Score

CVE-2022-50677 is a use-after-free vulnerability in the Linux kernel's IPMI subsystem, specifically within the _ipmi_destroy_user() function, where the 'intf' pointer is freed and then improperly dereferenced. While a CVSS score is not provided, its FAUCET Risk Score of 7/100 suggests a low severity, and its EPSS score indicates a very low likelihood of exploitation. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.19.92, < 4.19.270CPE match
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.4.7, < 5.4.229CPE match
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.22%
Probability of exploitation in next 30 days
EPSS Percentile
12.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Patch Available

Vendor Patches (5)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-477.21.1.el8_8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-513.5.1.el8_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-362.8.1.el9_3
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-50677Moderate

kernel: ipmi: fix use after free in _ipmi_destroy_user()

Dec 9, 2025

References

git.kernel.org / stable/c/1fc9b20a7688000fcf4d7fbaa58e415a3cdda961
git.kernel.org / stable/c/35ad87bfe330f7ef6a19f772223c63296d643172
git.kernel.org / stable/c/a92ce570c81dc0feaeb12a429b4bc65686d17967
git.kernel.org / stable/c/bfce073089cb81482521c65061835aaa6d1a6cc0
git.kernel.org / stable/c/d23006f2a56e11a3103de0ca8b843bf7fd7d76fc
git.kernel.org / stable/c/f29d127b372e1b7662397d92341d9f7de198ff99
git.kernel.org / stable/c/f7fde441198a9ecb130c3ccec91ee2131d6998ee