CVE-2022-50413: wifi: mac80211: fix use-after-free

Published Sep 18, 2025
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

wifi: mac80211: fix use-after-free

We've already freed the assocdata at this point, so need to use another copy of the AP (MLD) address instead.

Affected Software

2 affected components
Linux Linux kernel
Linux Linux kernel>=6.0<6.0.3

Event History

Sep 18, 2025
CVE Published
via MITRE·04:03 PM
Data Sourced
via MITRE·04:03 PM
DescriptionSeverity
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Nov 24, 58560
Event
via MITRE·11:01 PM

Frequently Asked Questions

1

What is the severity of CVE-2022-50413?

CVE-2022-50413 has been assessed as having a medium severity level due to potential exploitation risks associated with a use-after-free condition in the Linux kernel.

2

How do I fix CVE-2022-50413?

To fix CVE-2022-50413, update your Linux kernel to the latest version or patch provided by your Linux distribution maintainers.

3

What impact does CVE-2022-50413 have on affected systems?

CVE-2022-50413 may allow an attacker to execute arbitrary code or cause a denial of service by exploiting the use-after-free vulnerability in network components.

4

Which versions of the Linux kernel are affected by CVE-2022-50413?

CVE-2022-50413 affects specific versions of the Linux kernel where the mac80211 subsystem is used, particularly before the provided patches were applied.

5

Is CVE-2022-50413 actively being exploited in the wild?

As of the last available data, there are no confirmed reports of CVE-2022-50413 being actively exploited, but users are advised to apply patches promptly.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203