SB20251226141 - Use-after-free in Linux kernel rtl8192u ieee80211 driver
Published: December 26, 2025 Updated: December 31, 2025
Security Bulletin ID
SB20251226141
Severity
Low
Patch available
YES
Number of vulnerabilities
1
Exploitation vector
Local access
Highest impact
Code execution
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Use-after-free (CVE-ID: CVE-2022-50732)
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a use-after-free error within the ieee80211_rx() function in drivers/staging/rtl8192u/ieee80211/ieee80211_rx.c. A local user can escalate privileges on the system.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/288ada16a93aab5aa2ebea8190aafdb35b716854
- https://git.kernel.org/stable/c/73df1172bbcc8d45cd28e3b1a9ca2edb2f9f7ce6
- https://git.kernel.org/stable/c/9c03db0ec84b7964a11b20706665c99a5fead332
- https://git.kernel.org/stable/c/a0df8d44b555ae09729d6533fd4532977563c7b9
- https://git.kernel.org/stable/c/b0aaec894a909c88117c8bda6c7c9b26cf7c744b
- https://git.kernel.org/stable/c/bcc5e2dcf09089b337b76fc1a589f6ff95ca19ac
- https://git.kernel.org/stable/c/daa8045a991363ccdae5615d170f35aa1135e7a7
- https://git.kernel.org/stable/c/de174163c0d319ff06d622e79130a0017c8f5a6e
- https://git.kernel.org/stable/c/fdc62d31d50e4ce5d8f363fcb8299ba0e00ee6fd
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.14.303