CVE-2022-50512
published 2025-10-07CVE-2022-50512: In the Linux kernel, the following vulnerability has been resolved: ext4: fix potential memory leak in ext4_fc_record_regions() As krealloc may return NULL, in…
PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix potential memory leak in ext4_fc_record_regions()
As krealloc may return NULL, in this case 'state->fc_regions' may not be
freed by krealloc, but 'state->fc_regions' already set NULL. Then will
lead to 'state->fc_regions' memory leak.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.3-1 (bookworm) | linux 6.0.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2 < 2cfb769d60a2a57eb3566765428b6131cd16dcfe | 2cfb769d60a2a57eb3566765428b6131cd16dcfe |
| linux | linux | >= 8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2 < 417b0455a0b6d0f60a2930592731d1f8340e24be | 417b0455a0b6d0f60a2930592731d1f8340e24be |
| linux | linux | >= 8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2 < a4058b869e6c5e517c79e30532a350d0f3115c3e | a4058b869e6c5e517c79e30532a350d0f3115c3e |
| linux | linux | >= 8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2 < 518566e71ad86b7c2f1bf6d9caee9588bb7ac158 | 518566e71ad86b7c2f1bf6d9caee9588bb7ac158 |
| linux | linux | >= 8016e29f4362e285f0f7e38fadc61a5b7bdfdfa2 < 7069d105c1f15c442b68af43f7fde784f3126739 | 7069d105c1f15c442b68af43f7fde784f3126739 |
| linux | linux_kernel | >= 0 < 5.10.158-1 | 5.10.158-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 5.10 < 5.10.150 | 5.10.150 |
| linux | linux_kernel | >= 5.11 < 5.15.75 | 5.15.75 |
| linux | linux_kernel | >= 5.16 < 5.19.17 | 5.19.17 |
| linux | linux_kernel | >= 6.0 < 6.0.3 | 6.0.3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Linux Kernel up to 5.10.149/5.15.74/5.19.16/6.0.2 ext4_fc_record_regions memory leak (WID-SEC-2025-2229)
vuldb·2026-04-18·CVSS 5.5
CVE-2022-50512 [MEDIUM] Linux Kernel up to 5.10.149/5.15.74/5.19.16/6.0.2 ext4_fc_record_regions memory leak (WID-SEC-2025-2229)
A vulnerability was found in Linux Kernel up to 5.10.149/5.15.74/5.19.16/6.0.2. It has been declared as critical. This impacts the function ext4_fc_record_regions. Executing a manipulation can lead to memory leak.
The identification of this vulnerability is CVE-2022-50512. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
OSV
CVE-2022-50512: In the Linux kernel, the following vulnerability has been resolved: ext4: fix potential memory leak in ext4_fc_record_regions() As krealloc may return
osv·2025-10-07·CVSS 5.5
CVE-2022-50512 [MEDIUM] CVE-2022-50512: In the Linux kernel, the following vulnerability has been resolved: ext4: fix potential memory leak in ext4_fc_record_regions() As krealloc may return
In the Linux kernel, the following vulnerability has been resolved: ext4: fix potential memory leak in ext4_fc_record_regions() As krealloc may return NULL, in this case 'state->fc_regions' may not be freed by krealloc, but 'state->fc_regions' already set NULL. Then will lead to 'state->fc_regions' memory leak.
GHSA
GHSA-6f74-35r6-2p5x: In the Linux kernel, the following vulnerability has been resolved:
ext4: fix potential memory leak in ext4_fc_record_regions()
As krealloc may retu
ghsa_unreviewed·2025-10-07
CVE-2022-50512 [MEDIUM] CWE-401 GHSA-6f74-35r6-2p5x: In the Linux kernel, the following vulnerability has been resolved:
ext4: fix potential memory leak in ext4_fc_record_regions()
As krealloc may retu
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix potential memory leak in ext4_fc_record_regions()
As krealloc may return NULL, in this case 'state->fc_regions' may not be
freed by krealloc, but 'state->fc_regions' already set NULL. Then will
lead to 'state->fc_regions' memory leak.
Red Hat
kernel: ext4: fix potential memory leak in ext4_fc_record_regions()
vendor_redhat·2025-10-07·CVSS 5.5
CVE-2022-50512 [MEDIUM] CWE-772 kernel: ext4: fix potential memory leak in ext4_fc_record_regions()
kernel: ext4: fix potential memory leak in ext4_fc_record_regions()
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix potential memory leak in ext4_fc_record_regions()
As krealloc may return NULL, in this case 'state->fc_regions' may not be
freed by krealloc, but 'state->fc_regions' already set NULL. Then will
lead to 'state->fc_regions' memory leak.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux
Debian
CVE-2022-50512: linux - In the Linux kernel, the following vulnerability has been resolved: ext4: fix p...
vendor_debian·2022·CVSS 5.5
CVE-2022-50512 [MEDIUM] CVE-2022-50512: linux - In the Linux kernel, the following vulnerability has been resolved: ext4: fix p...
In the Linux kernel, the following vulnerability has been resolved: ext4: fix potential memory leak in ext4_fc_record_regions() As krealloc may return NULL, in this case 'state->fc_regions' may not be freed by krealloc, but 'state->fc_regions' already set NULL. Then will lead to 'state->fc_regions' memory leak.
Scope: local
bookworm: resolved (fixed in 6.0.3-1)
bullseye: resolved (fixed in 5.10.158-1)
forky: resolved (fixed in 6.0.3-1)
sid: resolved (fixed in 6.0.3-1)
trixie: resolved (fixed in 6.0.3-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/2cfb769d60a2a57eb3566765428b6131cd16dcfehttps://git.kernel.org/stable/c/417b0455a0b6d0f60a2930592731d1f8340e24behttps://git.kernel.org/stable/c/518566e71ad86b7c2f1bf6d9caee9588bb7ac158https://git.kernel.org/stable/c/7069d105c1f15c442b68af43f7fde784f3126739https://git.kernel.org/stable/c/a4058b869e6c5e517c79e30532a350d0f3115c3e
2025-10-07
Published