cbcvebase.
CVE-2022-49853
published 2025-05-01

CVE-2022-49853: In the Linux kernel, the following vulnerability has been resolved: net: macvlan: fix memory leaks of macvlan_common_newlink kmemleak reports memory leaks in…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.4th percentile
In the Linux kernel, the following vulnerability has been resolved: net: macvlan: fix memory leaks of macvlan_common_newlink kmemleak reports memory leaks in macvlan_common_newlink, as follows: ip link add link eth0 name .. type macvlan mode source macaddr add kmemleak reports: unreferenced object 0xffff8880109bb140 (size 64): comm "ip", pid 284, jiffies 4294986150 (age 430.108s) hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 b8 aa 5a 12 80 88 ff ff ..........Z..... 80 1b fa 0d 80 88 ff ff 1e ff ac af c7 c1 6b 6b ..............kk backtrace: [] kmem_cache_alloc_trace+0x1c7/0x300 [] macvlan_hash_add_source+0x45/0xc0 [] macvlan_changelink_sources+0xd7/0x170 [] macvlan_common_newlink+0x38c/0x5a0 [] macvlan_newlink+0xe/0x20 [] __rtnl_newlink+0x7af/0xa50 [] rtnl_newlink+0x48/0x70 ... In the scenario where the macvlan mode is configured as 'source', macvlan_changelink_sources() will be execured to reconfigure list of remote source mac addresses, at the same time, if register_netdevice() return an error, the resource generated by macvlan_changelink_sources() is not cleaned up. Using this patch, in the case of an error, it will execute macvlan_flush_sources() to ensure that the resource is cleaned up.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.10-1 (bookworm)linux 6.0.10-1 (bookworm)
linuxlinux
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < 9f288e338be206713d79b29144c27fca4503c39b9f288e338be206713d79b29144c27fca4503c39b
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < 21d3a8b6a1e39e7529ce9de07316ee13a63f305b21d3a8b6a1e39e7529ce9de07316ee13a63f305b
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < a81b44d1df1f07f00c0dcc0a0b3d2fa24a46289ea81b44d1df1f07f00c0dcc0a0b3d2fa24a46289e
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < 685e73e3f7a9fb75cbf049a9d0b7c45cc6b57b2e685e73e3f7a9fb75cbf049a9d0b7c45cc6b57b2e
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < 956e0216a19994443c90ba2ea6b0b284c9c4f9cb956e0216a19994443c90ba2ea6b0b284c9c4f9cb
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < a8d67367ab33604326cc37ab44fd1801bf5691baa8d67367ab33604326cc37ab44fd1801bf5691ba
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < 9ea003c4671b2fc455320ecf6d4a43b0a3c1878a9ea003c4671b2fc455320ecf6d4a43b0a3c1878a
linuxlinux>= aa5fd0fb77486b8a6764ead8627baa14790e4280 < 23569b5652ee8e8e55a12f7835f59af6f3cefc3023569b5652ee8e8e55a12f7835f59af6f3cefc30
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.158-15.10.158-1
linuxlinux_kernel>= 0 < 6.0.10-16.0.10-1
linuxlinux_kernel>= 0 < 6.0.10-16.0.10-1
linuxlinux_kernel>= 0 < 6.0.10-16.0.10-1
linuxlinux_kernel>= 4.10 < 4.14.3004.14.300
linuxlinux_kernel>= 4.15 < 4.19.2674.19.267
linuxlinux_kernel>= 4.20 < 5.4.2255.4.225
linuxlinux_kernel>= 4.9 < 4.9.3344.9.334
linuxlinux_kernel>= 5.11 < 5.15.795.15.79
linuxlinux_kernel>= 5.16 < 6.0.96.0.9
linuxlinux_kernel>= 5.5 < 5.10.1555.10.155

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.