cbcvebase.
CVE-2022-49803
published 2025-05-01

CVE-2022-49803: In the Linux kernel, the following vulnerability has been resolved: netdevsim: Fix memory leak of nsim_dev->fa_cookie kmemleak reports this issue: unreferenced…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
8.7th percentile
In the Linux kernel, the following vulnerability has been resolved: netdevsim: Fix memory leak of nsim_dev->fa_cookie kmemleak reports this issue: unreferenced object 0xffff8881bac872d0 (size 8): comm "sh", pid 58603, jiffies 4481524462 (age 68.065s) hex dump (first 8 bytes): 04 00 00 00 de ad be ef ........ backtrace: [] __kmalloc+0x49/0x150 [] nsim_dev_trap_fa_cookie_write+0xc1/0x210 [netdevsim] [] full_proxy_write+0xf3/0x180 [] vfs_write+0x1c5/0xaf0 [] ksys_write+0xed/0x1c0 [] do_syscall_64+0x3b/0x90 [] entry_SYSCALL_64_after_hwframe+0x63/0xcd The issue occurs in the following scenarios: nsim_dev_trap_fa_cookie_write() kmalloc() fa_cookie nsim_dev->fa_cookie = fa_cookie .. nsim_drv_remove() The fa_cookie allocked in nsim_dev_trap_fa_cookie_write() is not freed. To fix, add kfree(nsim_dev->fa_cookie) to nsim_drv_remove().

Affected

43 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.10-1 (bookworm)linux 6.0.10-1 (bookworm)
linuxlinux
linuxlinux>= d3cbb907ae57fe5da314b51d949b617b538bdeae < 7d79725a7073d86b9185f87718e22f3d651158017d79725a7073d86b9185f87718e22f3d65115801
linuxlinux>= d3cbb907ae57fe5da314b51d949b617b538bdeae < 6d463ddd0107d4188229d996dcdd45c99bad8af76d463ddd0107d4188229d996dcdd45c99bad8af7
linuxlinux>= d3cbb907ae57fe5da314b51d949b617b538bdeae < 207edad5717e0a5709ce8467f0eff41c607835c9207edad5717e0a5709ce8467f0eff41c607835c9
linuxlinux>= d3cbb907ae57fe5da314b51d949b617b538bdeae < 064bc7312bd09a48798418663090be0c776183db064bc7312bd09a48798418663090be0c776183db
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.0.10-16.0.10-1
linuxlinux_kernel>= 0 < 6.0.10-16.0.10-1
linuxlinux_kernel>= 0 < 6.0.10-16.0.10-1
linuxlinux_kernel>= 5.7 < 6.0.106.0.10
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-5.15
ubuntulinux-aws-fips
ubuntulinux-azure-5.15
ubuntulinux-azure-fde
ubuntulinux-azure-fde-5.15

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu7.1HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.