cbcvebase.
CVE-2022-49982
published 2025-06-18

CVE-2022-49982: In the Linux kernel, the following vulnerability has been resolved: media: pvrusb2: fix memory leak in pvr_probe The error handling code in pvr2_hdw_create…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.1th percentile
In the Linux kernel, the following vulnerability has been resolved: media: pvrusb2: fix memory leak in pvr_probe The error handling code in pvr2_hdw_create forgets to unregister the v4l2 device. When pvr2_hdw_create returns back to pvr2_context_create, it calls pvr2_context_destroy to destroy context, but mp->hdw is NULL, which leads to that pvr2_hdw_destroy directly returns. Fix this by adding v4l2_device_unregister to decrease the refcount of usb interface.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.2-1 (bookworm)linux 6.0.2-1 (bookworm)
linuxlinux
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < 2fe46195d2f0d5d09ea65433aefe47a4d0d0ff4d2fe46195d2f0d5d09ea65433aefe47a4d0d0ff4d
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < ba7dd8a9686a61a34b3a7b922ce721378d4740d0ba7dd8a9686a61a34b3a7b922ce721378d4740d0
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < 491762b3250fb06a0c97b5198656ea48359eaeed491762b3250fb06a0c97b5198656ea48359eaeed
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < 466b67c0543b2ae67814d053f6e29b39be6b33bb466b67c0543b2ae67814d053f6e29b39be6b33bb
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < bacb37bdc2a21c8f7fdc83dcc0dea2f4ca1341fbbacb37bdc2a21c8f7fdc83dcc0dea2f4ca1341fb
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < f2f6e67522916f53ad8ccd4dbe68dcf76e9776e5f2f6e67522916f53ad8ccd4dbe68dcf76e9776e5
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < c02d2a91a85c4c4d05826cd1ea74a9b8d42e4280c02d2a91a85c4c4d05826cd1ea74a9b8d42e4280
linuxlinux>= b72b7bf5cbb2ae77b3bf748456655fc284baf04c < 945a9a8e448b65bec055d37eba58f711b39f66f0945a9a8e448b65bec055d37eba58f711b39f66f0
linuxlinux_kernel< 4.9.3274.9.327
linuxlinux_kernel>= 0 < 5.10.148-15.10.148-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 4.10 < 4.14.2924.14.292
linuxlinux_kernel>= 4.15 < 4.19.2574.19.257
linuxlinux_kernel>= 4.20 < 5.4.2125.4.212
linuxlinux_kernel>= 5.11 < 5.15.655.15.65
linuxlinux_kernel>= 5.16 < 5.19.75.19.7
linuxlinux_kernel>= 5.5 < 5.10.1415.10.141

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.