{"schema_version":"1.9.0","id":"CVE-2022-50132","published":"2025-06-18T11:02:57.498Z","modified":"2026-08-12T03:51:20.539171989Z","related":["SUSE-SU-2025:02264-1","SUSE-SU-2025:02321-1","SUSE-SU-2025:02322-1","SUSE-SU-2025:02537-1"],"summary":"usb: cdns3: change place of 'priv_ep' assignment in cdns3_gadget_ep_dequeue(), cdns3_gadget_ep_enable()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nusb: cdns3: change place of 'priv_ep' assignment in cdns3_gadget_ep_dequeue(), cdns3_gadget_ep_enable()\n\nIf 'ep' is NULL, result of ep_to_cdns3_ep(ep) is invalid pointer\nand its dereference with priv_ep->cdns3_dev may cause panic.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"7733f6c32e36ff9d7adadf40001039bf219b1cbe"},{"fixed":"7af83bb516d7aa4f96835288e4aeda21d7aa2a17"},{"fixed":"bfa0201468587072454dba7933e4a4a7be44467a"},{"fixed":"d342203df9f2d0851b4acd9ed577d73d10eade77"},{"fixed":"eb82c0382285ee17a9966aaab27b8becb08eb1ac"},{"fixed":"c3ffc9c4ca44bfe9562166793d133e1fb0630ea6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50132.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.4.0"},{"fixed":"5.10.137"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.61"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"5.18.18"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.19.0"},{"fixed":"5.19.2"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50132.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/7af83bb516d7aa4f96835288e4aeda21d7aa2a17"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bfa0201468587072454dba7933e4a4a7be44467a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c3ffc9c4ca44bfe9562166793d133e1fb0630ea6"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d342203df9f2d0851b4acd9ed577d73d10eade77"},{"type":"WEB","url":"https://git.kernel.org/stable/c/eb82c0382285ee17a9966aaab27b8becb08eb1ac"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50132.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-50132"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50132.json"}}