Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50679

11
FAUCET Score

CVE-2022-50679 describes a DMA mapping leak vulnerability in the Linux kernel's i40e network driver. This flaw occurs during the reallocation of RX buffers, where new DMA mappings are created but older, already mapped buffers are not properly freed, leading to a memory leak. The vulnerability can be triggered by repeatedly adjusting the RX/TX ring parameters using ethtool, potentially causing a kernel crash due to memory exhaustion. The severity of this vulnerability is moderate. It requires local access to execute ethtool commands, making the attack vector local. The complexity is low, as the reproduction steps are straightforward. The potential impact is a denial-of-service (DoS) due to a kernel crash, which can disrupt system availability. There is no evidence of active exploitation for CVE-2022-50679. No exploit code is publicly available on platforms like Metasploit or ExploitDB, and there is minimal community discussion or media coverage, indicating a low level of attention from threat actors and researchers.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
5.8CNA affecteddefault affected
LinuxLinux
>= be1222b585fdc410b8c1dbcc57dd03a00f04eff5, < 5f499596dfa3db9b3172645b6de9e1096a669c95, >= be1222b585fdc410b8c1dbcc57dd03a00f04eff5, < 94a171c982b8a8137a00721c1e62bc2713435bca, >= be1222b585fdc410b8c1dbcc57dd03a00f04eff5, < aae425efdfd1b1d8452260a3cb49344ebf20b1f5, >= be1222b585fdc410b8c1dbcc57dd03a00f04eff5, < ed5baf3d0a33caaca4cd4073ebb0854cc77a616dCNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.21%
Probability of exploitation in next 30 days
EPSS Percentile
11.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Patch Available

Vendor Patches (7)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportFixed in: kernel-0:4.18.0-305.114.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Telecommunications Update ServiceFixed in: kernel-0:4.18.0-305.114.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionsFixed in: kernel-0:4.18.0-305.114.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-284.11.1.el9_2
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-50679Low

kernel: i40e: Fix DMA mappings leak

Dec 9, 2025

References

git.kernel.org / stable/c/5f499596dfa3db9b3172645b6de9e1096a669c95
git.kernel.org / stable/c/94a171c982b8a8137a00721c1e62bc2713435bca
git.kernel.org / stable/c/aae425efdfd1b1d8452260a3cb49344ebf20b1f5
git.kernel.org / stable/c/ed5baf3d0a33caaca4cd4073ebb0854cc77a616d