CVE-2022-50700 is a vulnerability in the Linux kernel's ath10k Wi-Fi driver, specifically affecting WCN3990 hardware. It arises from a race condition where the driver unmaps a buffer prematurely while the hardware is still processing it, leading to an SMMU fault and kernel panic. This issue is specific to the CE3 channel used for WMI commands. The vulnerability has a low FAUCET Risk Score of 7/100 and no assigned CVSS score, suggesting a limited attack surface and complexity. The impact is a denial-of-service due to a kernel panic, requiring local access or specific conditions to trigger. There is no indication of active exploitation, nor is exploit code publicly available in Metasploit, Nuclei, or ExploitDB. However, the vulnerability has garnered significant community discussion and media coverage, primarily through SUSE security updates addressing the issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 4.18CNA affecteddefault affected | |
| Linux | Linux | >= d390509bdf501c9c8c6e61248e4bc9314c86d854, < 79a124b588aadb5a22695542778de14366ff3219, >= d390509bdf501c9c8c6e61248e4bc9314c86d854, < acd4324e5f1f11351630234297f95076f0ac9a2f, >= d390509bdf501c9c8c6e61248e4bc9314c86d854, < c4bedc3cda09d896c92adcdb6b62aa93b0c47a8aCNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No social media mentions found for this CVE.