CVE-2022-50399: media: atomisp: prevent integer overflow in sh_css_set_black_frame()
Published Sep 18, 2025
·Updated
In the Linux kernel, the following vulnerability has been resolved:
media: atomisp: prevent integer overflow in shcsssetblackframe()
The "height" and "width" values come from the user so the "height width" multiplication can overflow.
Affected Software
5 affected components
Linux Linux kernel
Linux Linux kernel>=4.12<4.18
Linux Linux kernel>=5.8<5.15.77
Linux Linux kernel>=5.16<6.0.7
Linux Linux kernel=6.1-rc1
Event History
Sep 18, 2025
CVE Published
via MITRE·01:33 PM
Data Sourced
via MITRE·01:33 PM
DescriptionSeverity
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-50399?
CVE-2022-50399 has been assigned a moderate severity level due to potential integer overflow issues.
2
How do I fix CVE-2022-50399?
To fix CVE-2022-50399, upgrade to the patched version of the Linux kernel provided by your distribution.
3
What impact does CVE-2022-50399 have on my system?
CVE-2022-50399 may allow an attacker to cause denial of service through integer overflow in media handling.
4
Which versions of the Linux kernel are affected by CVE-2022-50399?
CVE-2022-50399 affects various versions of the Linux kernel prior to the patch release.
5
Is CVE-2022-50399 being actively exploited?
As of now, there are no confirmed active exploits for CVE-2022-50399 reported in the wild.