cbcvebase.
CVE-2022-50343
published 2025-09-16

CVE-2022-50343: In the Linux kernel, the following vulnerability has been resolved: rapidio: fix possible name leaks when rio_add_device() fails Patch series "rapidio: fix…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved: rapidio: fix possible name leaks when rio_add_device() fails Patch series "rapidio: fix three possible memory leaks". This patchset fixes three name leaks in error handling. - patch #1 fixes two name leaks while rio_add_device() fails. - patch #2 fixes a name leak while rio_register_mport() fails. This patch (of 2): If rio_add_device() returns error, the name allocated by dev_set_name() need be freed. It should use put_device() to give up the reference in the error path, so that the name can be freed in kobject_cleanup(), and the 'rdev' can be freed in rio_release_dev().

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 3b4676f274a6b5d001176f15d0542100bbf4b59a3b4676f274a6b5d001176f15d0542100bbf4b59a
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < c482cb0deb57924335103fe592c379a076d867f8c482cb0deb57924335103fe592c379a076d867f8
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 80fad2e53eaed2b3a2ff596575f65669e13ceda580fad2e53eaed2b3a2ff596575f65669e13ceda5
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 440afd7fd9b164fdde6fc9da8c47d3d7f20dcce8440afd7fd9b164fdde6fc9da8c47d3d7f20dcce8
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 88fa351b20ca300693a206ccd3c4b0e0647944d888fa351b20ca300693a206ccd3c4b0e0647944d8
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < ec3f04f74f50d0b6bac04d795c93c2b852753a7aec3f04f74f50d0b6bac04d795c93c2b852753a7a
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < c413f65011ff8caffabcde0e1c3ceede48a48d6fc413f65011ff8caffabcde0e1c3ceede48a48d6f
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < 85fbf58b15c09d3a6a03098c1e42ebfe9002f39d85fbf58b15c09d3a6a03098c1e42ebfe9002f39d
linuxlinux>= 1fa5ae857bb14f6046205171d98506d8112dd74e < f9574cd48679926e2a569e1957a5a1bcc8a719acf9574cd48679926e2a569e1957a5a1bcc8a719ac
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 2.6.30 < 4.9.3374.9.337
linuxlinux_kernel>= 4.10 < 4.14.3034.14.303
linuxlinux_kernel>= 4.15 < 4.19.2704.19.270
linuxlinux_kernel>= 4.20 < 5.4.2295.4.229
linuxlinux_kernel>= 5.11 < 5.15.865.15.86
linuxlinux_kernel>= 5.16 < 6.0.166.0.16
linuxlinux_kernel>= 5.5 < 5.10.1635.10.163
linuxlinux_kernel>= 6.1 < 6.1.26.1.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.