cbcvebase.
CVE-2022-49653
published 2025-02-26

CVE-2022-49653: In the Linux kernel, the following vulnerability has been resolved: i2c: piix4: Fix a memory leak in the EFCH MMIO support The recently added support for EFCH…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.28%
19.8th percentile
In the Linux kernel, the following vulnerability has been resolved: i2c: piix4: Fix a memory leak in the EFCH MMIO support The recently added support for EFCH MMIO regions introduced a memory leak in that code path. The leak is caused by the fact that release_resource() merely removes the resource from the tree but does not free its memory. We need to call release_mem_region() instead, which does free the memory. As a nice side effect, this brings back some symmetry between the legacy and MMIO paths.

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.14-1 (bookworm)linux 5.18.14-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 4b965566ca26e83553d92b8c57050e5d59911806 < d2bf1a6480e8d44658a8ac3bdcec081238873212d2bf1a6480e8d44658a8ac3bdcec081238873212
linuxlinux>= 5.15.42 < 5.15.545.15.54
linuxlinux>= 5.17.10 < 5.185.18
linuxlinux>= 7c148722d074c29fb998578eea5de3c14b9608c9 < a3263e4cf8265f0c9eb0ed8a9b50f132c7a42e19a3263e4cf8265f0c9eb0ed8a9b50f132c7a42e19
linuxlinux>= 7c148722d074c29fb998578eea5de3c14b9608c9 < 8ad59b397f86a4d8014966fdc0552095a0c4fb2b8ad59b397f86a4d8014966fdc0552095a0c4fb2b
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.18.14-15.18.14-1
linuxlinux_kernel>= 0 < 5.18.14-15.18.14-1
linuxlinux_kernel>= 0 < 5.18.14-15.18.14-1
linuxlinux_kernel>= 5.15.42 < 5.15.545.15.54
linuxlinux_kernel>= 5.17.10 < 5.18.115.18.11

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.