cbcvebase.
CVE-2022-49915
published 2025-05-01

CVE-2022-49915: In the Linux kernel, the following vulnerability has been resolved: mISDN: fix possible memory leak in mISDN_register_device() Afer commit 1fa5ae857bb1…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
9.1th percentile
In the Linux kernel, the following vulnerability has been resolved: mISDN: fix possible memory leak in mISDN_register_device() Afer commit 1fa5ae857bb1 ("driver core: get rid of struct device's bus_id string array"), the name of device is allocated dynamically, add put_device() to give up the reference, so that the name can be freed in kobject_cleanup() when the refcount is 0. Set device class before put_device() to avoid null release() function WARN message in device_release().

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.8-1 (bookworm)linux 6.0.8-1 (bookworm)
linuxlinux
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < d1d1aede313eb2b9a84afd60ff6cfb7c33631e0ed1d1aede313eb2b9a84afd60ff6cfb7c33631e0e
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 080aabfb29b2ee9cbb8894a1d039651943d3773e080aabfb29b2ee9cbb8894a1d039651943d3773e
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < a636fc5a7cabd05699b5692ad838c2c7a3abec7ba636fc5a7cabd05699b5692ad838c2c7a3abec7b
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 2ff6b669523d3b3d253a044fa9636a67d06949952ff6b669523d3b3d253a044fa9636a67d0694995
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < e77d213843e67b4373285712699b692f9c743f61e77d213843e67b4373285712699b692f9c743f61
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 029d5b7688a2f3a86f2a3be5a6ba9cc968c80e41029d5b7688a2f3a86f2a3be5a6ba9cc968c80e41
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 0d4e91efcaee081e919b3c50e875ecbb84290e410d4e91efcaee081e919b3c50e875ecbb84290e41
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < e7d1d4d9ac0dfa40be4c2c8abd0731659869b297e7d1d4d9ac0dfa40be4c2c8abd0731659869b297
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.158-15.10.158-1
linuxlinux_kernel>= 0 < 6.0.8-16.0.8-1
linuxlinux_kernel>= 0 < 6.0.8-16.0.8-1
linuxlinux_kernel>= 0 < 6.0.8-16.0.8-1
linuxlinux_kernel>= 2.6.30 < 4.9.3334.9.333
linuxlinux_kernel>= 4.10 < 4.14.2994.14.299
linuxlinux_kernel>= 4.15 < 4.19.2654.19.265
linuxlinux_kernel>= 4.20 < 5.4.2245.4.224
linuxlinux_kernel>= 5.11 < 5.15.785.15.78
linuxlinux_kernel>= 5.16 < 6.0.86.0.8
linuxlinux_kernel>= 5.5 < 5.10.1545.10.154

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.