CVE-2022-50400Missing Release of Memory after Effective Lifetime in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 91.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 18

Description

In the Linux kernel, the following vulnerability has been resolved: staging: greybus: audio_helper: remove unused and wrong debugfs usage In the greybus audio_helper code, the debugfs file for the dapm has the potential to be removed and memory will be leaked. There is also the very real potential for this code to remove ALL debugfs entries from the system, and it seems like this is what will really happen if this code ever runs. This all is very wrong as the greybus audio driver did not creat

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel5.115.15.75+3
Debianlinux/linux_kernel< 5.10.158-1+3
CVEListV5linux/linux510e340efe0cbd379cf1ff3490d088c3299749b1d0febad83e29d85bb66e4f5cac0115b022403338+5
debiandebian/linux< linux 6.0.3-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2022-50400: In the Linux kernel, the following vulnerability has been resolved: staging: greybus: audio_helper: remove unused and wrong debugfs usage In the greyb2025-09-18
GHSA
GHSA-f9wf-xvm8-m6qp: In the Linux kernel, the following vulnerability has been resolved: staging: greybus: audio_helper: remove unused and wrong debugfs usage In the gre2025-09-18

📋Vendor Advisories

2
Red Hat
kernel: staging: greybus: audio_helper: remove unused and wrong debugfs usage2025-09-18
Debian
CVE-2022-50400: linux - In the Linux kernel, the following vulnerability has been resolved: staging: gr...2022
CVE-2022-50400 — Linux vulnerability | cvebase