CVE-2022-50723
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2022-50723 is a memory leak vulnerability in the Linux kernel's bnxt_en network driver, specifically within the bnxt_nvm_test() function. The flaw occurs because a kzalloc-allocated buffer is not freed before returning in the success path, resulting in a kernel memory leak. It was published on December 24, 2025, and affects Linux kernel versions in the range from commit 5b6ff128fdf6 up to the patched commits. Fixed versions include Linux 6.0.6 and 6.1. The CVSS base score is not formally assigned (estimated Medium by Feedly; ENISA lists a base score of 0.0 pending full analysis) (Feedly, ENISA EUVD).

Technical details

The root cause is a missing kfree() call in the success return path of bnxt_nvm_test() in the Linux kernel's Broadcom bnxt_en Ethernet driver, classified as CWE-401 (Missing Release of Memory after Effective Lifetime). When the NVM (Non-Volatile Memory) test completes successfully, the function returns without freeing the buffer previously allocated with kzalloc, causing a kernel memory leak. Exploitation requires local access to trigger the NVM test path, typically through privileged network driver diagnostics or ethtool operations. Patches are available as stable kernel commits be083d97031712a2e16fd915ddb8fe1a6cb1fbc5 (6.1 branch) and ba077d683d45190afc993c1ce45bcdbfda741a40 (6.0.x branch) (Feedly, ENISA EUVD).

Impact

The primary impact is a kernel memory leak, which over time can degrade system availability by exhausting kernel memory resources, potentially leading to system instability or denial of service on affected hosts. Confidentiality and integrity are not directly impacted, as the vulnerability does not expose memory contents to unprivileged users or allow arbitrary code execution. The affected scope is limited to systems running the Broadcom bnxt_en driver with vulnerable kernel versions (Feedly).

Mitigation and workarounds

Apply the upstream Linux kernel patches: commit be083d97031712a2e16fd915ddb8fe1a6cb1fbc5 for the 6.1 branch and ba077d683d45190afc993c1ce45bcdbfda741a40 for the 6.0.x branch, both of which add the missing kfree() call in bnxt_nvm_test(). Distributions such as SUSE have issued kernel updates addressing this CVE (e.g., SUSE advisories SUSE-2026:0263-1 and SUSE-2026:0317-1). Users should update to Linux kernel 6.0.6 or 6.1 (or later), or apply the relevant distribution-provided kernel update (ENISA EUVD, Linux Security SUSE).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-64557NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-selftests-internal
NoNoJul 29, 2026
CVE-2026-64556NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-64k-devel
NoNoJul 29, 2026
CVE-2026-64555NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-azure-fde-6.14
NoNoJul 27, 2026
CVE-2026-64554NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-gcp-6.14
NoYesJul 27, 2026
CVE-2026-64553NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-64k-debug-modules-internal
NoYesJul 27, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management