Security Advisory

CVE-2022-50767

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-24 13:05:57
Last updated 2026-05-11 19:25:08
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: smscufx: Fix several use-after-free bugs Several types of UAFs can occur when physically removing a USB device. Adds ufx_ops_destroy() function to .fb_destroy of fb_ops, and in this function, there is kref_put() that finally calls ufx_free(). This fix prevents multiple UAFs.