CVE-2022-50877 addresses a vulnerability in the Linux kernel's Broadcom bcm4908_enet network driver. The flaw involved incorrect updating of transmit statistics, which could lead to a race condition and a NULL dereference after a packet buffer was freed prematurely. This issue primarily affects systems utilizing the Broadcom bcm4908 network interface. The severity of this vulnerability is moderate, with a FAUCET Risk Score of 7/100. While a direct attack vector isn't explicitly detailed, the potential for a NULL dereference could lead to system instability or denial of service, requiring local access or specific network conditions to trigger. The complexity of exploitation is likely moderate, given it involves a race condition within kernel-level network driver code. There is currently no evidence of active exploitation for CVE-2022-50877. No public exploit code exists on platforms like Metasploit, Nuclei, or ExploitDB, and there is minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 5.12CNA affecteddefault affected | |
| Linux | Linux | >= 4feffeadbcb2e5b11cbbf191a33c245b74a5837b, < 2adedc80faec243ede55355e57142110d6f46e08, >= 4feffeadbcb2e5b11cbbf191a33c245b74a5837b, < c9589e18a60c55c76772a38117ef9a16b942e56b, >= 4feffeadbcb2e5b11cbbf191a33c245b74a5837b, < ef3556ee16c68735ec69bd08df41d1cd83b14ad3CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.