CVE-2022-50250Missing Release of Resource after Effective Lifetime in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.47%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 15

Description

In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix use_count leakage when handling boot-on I found a use_count leakage towards supply regulator of rdev with boot-on option. ┌───────────────────┐ ┌───────────────────┐ │ regulator_dev A │ │ regulator_dev B │ │ (boot-on) │ │ (boot-on) │ │ use_count=0 │◀──supply──│ use_count=1 │ │ │ │ │ └───────────────────┘ └───────────────────┘ In case of rdev(A) configured with `regulator-boot-on', the use_count of supply

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel4.205.4.229+5
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linuxdc1b1d7faf616ed663d0bba9be5abb4d1ed35d01dc3391d49479bc2bf8a2b88dbf86fdd800882fee+7
debiandebian/linux< linux 6.1.4-1 (bookworm)

Patches

🔴Vulnerability Details

2
GHSA
GHSA-v49x-f2vh-6pj7: In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix use_count leakage when handling boot-on I found a use_count2025-09-15
OSV
CVE-2022-50250: In the Linux kernel, the following vulnerability has been resolved: regulator: core: fix use_count leakage when handling boot-on I found a use_count l2025-09-15

📋Vendor Advisories

2
Red Hat
kernel: regulator: core: fix use_count leakage when handling boot-on2025-09-15
Debian
CVE-2022-50250: linux - In the Linux kernel, the following vulnerability has been resolved: regulator: ...2022
CVE-2022-50250 — Linux vulnerability | cvebase