cbcvebase.
CVE-2022-50289
published 2025-09-15

CVE-2022-50289: In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix memory leak in ocfs2_stack_glue_init() ocfs2_table_header should be free in…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix memory leak in ocfs2_stack_glue_init() ocfs2_table_header should be free in ocfs2_stack_glue_init() if ocfs2_sysfs_init() failed, otherwise kmemleak will report memleak. BUG: memory leak unreferenced object 0xffff88810eeb5800 (size 128): comm "modprobe", pid 4507, jiffies 4296182506 (age 55.888s) hex dump (first 32 bytes): c0 40 14 a0 ff ff ff ff 00 00 00 00 01 00 00 00 .@.............. 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [] __register_sysctl_table+0xca/0xef0 [] 0xffffffffa0050037 [] do_one_initcall+0xdb/0x480 [] do_init_module+0x1cf/0x680 [] load_module+0x6441/0x6f20 [] __do_sys_finit_module+0x12f/0x1c0 [] do_syscall_64+0x3f/0x90 [] entry_SYSCALL_64_after_hwframe+0x63/0xcd

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 0000281f019111526f7abccc61f2746d2eb626ca0000281f019111526f7abccc61f2746d2eb626ca
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 802abe2bc654e87334e6a0ab6c1adc2b6d5f6394802abe2bc654e87334e6a0ab6c1adc2b6d5f6394
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < b0822faebd79971617abd495beb2d6f5356b88bfb0822faebd79971617abd495beb2d6f5356b88bf
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 7c8bf45cea9c8d6fb3e14d8cd5ae60e0372f39b77c8bf45cea9c8d6fb3e14d8cd5ae60e0372f39b7
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < f5f2682d3a34dd8350bf63f232d885fd95f25b92f5f2682d3a34dd8350bf63f232d885fd95f25b92
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 61d68cf2ba79128c48d4b3fa4d10c34dc18ba57261d68cf2ba79128c48d4b3fa4d10c34dc18ba572
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 6f6c13776cbee4b6a515f4cd3b859f046be4f6f96f6c13776cbee4b6a515f4cd3b859f046be4f6f9
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 0b2128b70849f2728949babfc1c760096ef72f5d0b2128b70849f2728949babfc1c760096ef72f5d
linuxlinux>= 3878f110f71a0971ff7acc15dd6db711b6ef37c6 < 13b6269dd022aaa69ca8d1df374ab327504121cf13b6269dd022aaa69ca8d1df374ab327504121cf
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 2.6.27 < 4.9.3374.9.337
linuxlinux_kernel>= 4.10 < 4.14.3034.14.303
linuxlinux_kernel>= 4.15 < 4.19.2704.19.270
linuxlinux_kernel>= 4.20 < 5.4.2295.4.229
linuxlinux_kernel>= 5.11 < 5.15.865.15.86
linuxlinux_kernel>= 5.16 < 6.0.166.0.16
linuxlinux_kernel>= 5.5 < 5.10.1635.10.163
linuxlinux_kernel>= 6.1 < 6.1.26.1.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.