CVE-2022-50482

high

Description

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clean up si_domain in the init_dmars() error path A splat from kmem_cache_destroy() was seen with a kernel prior to commit ee2653bbe89d ("iommu/vt-d: Remove domain and devinfo mempool") when there was a failure in init_dmars(), because the iommu_domain cache still had objects. While the mempool code is now gone, there still is a leak of the si_domain memory if init_dmars() fails. So clean up si_domain in the init_dmars() error path.

References

https://git.kernel.org/stable/c/d74196bb278b8f8af88e16bd595997dfa3d6fdb0

https://git.kernel.org/stable/c/c4ad3ae4c6be9d8b0701761c839771116bca6ea3

https://git.kernel.org/stable/c/749bea542b67513e99240dc58bbfc099e842d508

https://git.kernel.org/stable/c/724483b585a1b1e063d42ac5aa835707ff2ec165

https://git.kernel.org/stable/c/620bf9f981365c18cc2766c53d92bf8131c63f32

https://git.kernel.org/stable/c/5cecfe151874b835331efe086bbdcaeaf64f6b90

https://git.kernel.org/stable/c/0365d6af75f9f2696e94a0fef24a2c8464c037c8

Details

Source: Mitre, NVD

Published: 2025-10-04

Updated: 2025-10-06

Risk Information

CVSS v2

Base Score: 5.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00024