CVE-2022-50331
published 2025-09-15CVE-2022-50331: In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new() Inject fault while probing…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
4.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
Inject fault while probing module, if device_register() fails,
but the refcount of kobject is not decreased to 0, the name
allocated in dev_set_name() is leaked. Fix this by calling
put_device(), so that name can be freed in callback function
kobject_cleanup().
unreferenced object 0xffff88810152ad20 (size 8):
comm "modprobe", pid 252, jiffies 4294849206 (age 22.713s)
hex dump (first 8 bytes):
68 77 73 69 6d 30 00 ff hwsim0..
backtrace:
[] __kmalloc_node_track_caller+0x44/0x1b0
[] kvasprintf+0xb5/0x140
[] kvasprintf_const+0x55/0x180
[] kobject_set_name_vargs+0x56/0x150
[] dev_set_name+0xab/0xe0
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.6-1 (bookworm) | linux 6.0.6-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= f36a111a74e71edbba27d4c0cf3d7bbccc172108 < 50c31fa952309536c6e4461ff815ddccc8dff9d5 | 50c31fa952309536c6e4461ff815ddccc8dff9d5 |
| linux | linux | >= f36a111a74e71edbba27d4c0cf3d7bbccc172108 < d87973314aba6de80a49f4271dd9be4ddc08e729 | d87973314aba6de80a49f4271dd9be4ddc08e729 |
| linux | linux | >= f36a111a74e71edbba27d4c0cf3d7bbccc172108 < 258ad2fe5ede773625adfda88b173f4123e59f45 | 258ad2fe5ede773625adfda88b173f4123e59f45 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.0.6-1 | 6.0.6-1 |
| linux | linux_kernel | >= 0 < 6.0.6-1 | 6.0.6-1 |
| linux | linux_kernel | >= 0 < 6.0.6-1 | 6.0.6-1 |
| linux | linux_kernel | >= 5.14 < 5.15.76 | 5.15.76 |
| linux | linux_kernel | >= 5.16 < 6.0.6 | 6.0.6 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
vendor_redhat·2025-09-15·CVSS 5.5
CVE-2022-50331 [MEDIUM] CWE-401 kernel: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
kernel: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
In the Linux kernel, the following vulnerability has been resolved:
wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
Inject fault while probing module, if device_register() fails,
but the refcount of kobject is not decreased to 0, the name
allocated in dev_set_name() is leaked. Fix this by calling
put_device(), so that name can be freed in callback function
kobject_cleanup().
unreferenced object 0xffff88810152ad20 (size 8):
comm "modprobe", pid 252, jiffies 4294849206 (age 22.713s)
hex dump (first 8 bytes):
68 77 73 69 6d 30 00 ff hwsim0..
backtrace:
[] __kmalloc_node_track_caller+0x44/0x1b0
[] kvasprintf+0xb5/0x140
[] kvasprintf_const+0x55/0x180
[] kobject_set_name_vargs+0x56/0x150
[] dev_set_name+0xab/0xe0
Debian
CVE-2022-50331: linux - In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim:...
vendor_debian·2022·CVSS 5.5
CVE-2022-50331 [MEDIUM] CVE-2022-50331: linux - In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim:...
In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new() Inject fault while probing module, if device_register() fails, but the refcount of kobject is not decreased to 0, the name allocated in dev_set_name() is leaked. Fix this by calling put_device(), so that name can be freed in callback function kobject_cleanup(). unreferenced object 0xffff88810152ad20 (size 8): comm "modprobe", pid 252, jiffies 4294849206 (age 22.713s) hex dump (first 8 bytes): 68 77 73 69 6d 30 00 ff hwsim0.. backtrace: [] __kmalloc_node_track_caller+0x44/0x1b0 [] kvasprintf+0xb5/0x140 [] kvasprintf_const+0x55/0x180 [] kobject_set_name_vargs+0x56/0x150 [] dev_set_name+0xab/0xe0
Scope: local
bookworm: resolved (fixed in 6.0.6-1)
bullseye: resolved
OSV
CVE-2022-50331: In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new() Inject fault while pr
osv·2025-09-15·CVSS 5.5
CVE-2022-50331 [MEDIUM] CVE-2022-50331: In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new() Inject fault while pr
In the Linux kernel, the following vulnerability has been resolved: wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new() Inject fault while probing module, if device_register() fails, but the refcount of kobject is not decreased to 0, the name allocated in dev_set_name() is leaked. Fix this by calling put_device(), so that name can be freed in callback function kobject_cleanup(). unreferenced object 0xffff88810152ad20 (size 8): comm "modprobe", pid 252, jiffies 4294849206 (age 22.713s) hex dump (first 8 bytes): 68 77 73 69 6d 30 00 ff hwsim0.. backtrace: [] __kmalloc_node_track_caller+0x44/0x1b0 [] kvasprintf+0xb5/0x140 [] kvasprintf_const+0x55/0x180 [] kobject_set_name_vargs+0x56/0x150 [] dev_set_name+0xab/0xe0
GHSA
GHSA-2wr3-6ffm-mq44: In the Linux kernel, the following vulnerability has been resolved:
wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
Inject fault while
ghsa_unreviewed·2025-09-15
CVE-2022-50331 [MEDIUM] CWE-401 GHSA-2wr3-6ffm-mq44: In the Linux kernel, the following vulnerability has been resolved:
wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
Inject fault while
In the Linux kernel, the following vulnerability has been resolved:
wwan_hwsim: fix possible memory leak in wwan_hwsim_dev_new()
Inject fault while probing module, if device_register() fails,
but the refcount of kobject is not decreased to 0, the name
allocated in dev_set_name() is leaked. Fix this by calling
put_device(), so that name can be freed in callback function
kobject_cleanup().
unreferenced object 0xffff88810152ad20 (size 8):
comm "modprobe", pid 252, jiffies 4294849206 (age 22.713s)
hex dump (first 8 bytes):
68 77 73 69 6d 30 00 ff hwsim0..
backtrace:
[] __kmalloc_node_track_caller+0x44/0x1b0
[] kvasprintf+0xb5/0x140
[] kvasprintf_const+0x55/0x180
[] kobject_set_name_vargs+0x56/0x150
[] dev_set_name+0xab/0xe0
No detection rules found.
No public exploits indexed.
2025-09-15
Published