CVE-2022-50708
published 2025-12-24CVE-2022-50708: In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open() ssip_pn_open() claims the…
PriorityP419medium5.3
EPSS
0.18%
7.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When
hsi_register_port_event() gets some error and returns a negetive value,
the HSI client's port should be released with hsi_release_port().
Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.3-1 (bookworm) | linux 6.0.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= dc7bf5d7186849aa36b9f0e42e250a813a7b0bdb < 78b0ef14896f843c45372f9bbdb6f6070f977eaf | 78b0ef14896f843c45372f9bbdb6f6070f977eaf |
| linux | linux | >= dc7bf5d7186849aa36b9f0e42e250a813a7b0bdb < e78b45b3eeee1cec77c794fcbf0512537c20b1dc | e78b45b3eeee1cec77c794fcbf0512537c20b1dc |
| linux | linux | >= dc7bf5d7186849aa36b9f0e42e250a813a7b0bdb < b28dbcb379e6a7f80262c2732a57681b1ee548ca | b28dbcb379e6a7f80262c2732a57681b1ee548ca |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 3.16.0 < 5.19.17 | 5.19.17 |
| linux | linux_kernel | >= 5.20.0 < 6.0.3 | 6.0.3 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
vendor_redhat·2025-12-24
CVE-2022-50708 kernel: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
kernel: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When
hsi_register_port_event() gets some error and returns a negetive value,
the HSI client's port should be released with hsi_release_port().
Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2022-50708: linux - In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_pr...
vendor_debian·2022
CVE-2022-50708 CVE-2022-50708: linux - In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_pr...
In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open() ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When hsi_register_port_event() gets some error and returns a negetive value, the HSI client's port should be released with hsi_release_port(). Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
Scope: local
bookworm: resolved (fixed in 6.0.3-1)
bullseye: open
forky: resolved (fixed in 6.0.3-1)
sid: resolved (fixed in 6.0.3-1)
trixie: resolved (fixed in 6.0.3-1)
OSV
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
osv·2025-12-24
CVE-2022-50708 HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When
hsi_register_port_event() gets some error and returns a negetive value,
the HSI client's port should be released with hsi_release_port().
Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
OSV
CVE-2022-50708: In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open() ssip_pn_open() cl
osv·2025-12-24
CVE-2022-50708 CVE-2022-50708: In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open() ssip_pn_open() cl
In the Linux kernel, the following vulnerability has been resolved: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open() ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When hsi_register_port_event() gets some error and returns a negetive value, the HSI client's port should be released with hsi_release_port(). Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
GHSA
GHSA-6pv9-7wm9-9v5x: In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open()
ghsa_unreviewed·2025-12-24
CVE-2022-50708 GHSA-6pv9-7wm9-9v5x: In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open()
In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When
hsi_register_port_event() gets some error and returns a negetive value,
the HSI client's port should be released with hsi_release_port().
Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2022-50708 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.3
CVE-2022-50708 [MEDIUM] CVE-2022-50708 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2022-50708 :
Linux Debian vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When
hsi_register_port_event() gets some error and returns a negetive value,
the HSI client's port should be released with hsi_release_port().
Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
Source : NVD
Published December 24, 2025
CNA Score N/A
Affected Technologies
Linux Debian
Linux Ubuntu
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.8
Exploitation Probability (EPSS) N/A
Affected pack
Bugzilla
CVE-2022-50708 kernel: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
bugzilla·2025-12-24
CVE-2022-50708 CVE-2022-50708 kernel: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
CVE-2022-50708 kernel: HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
In the Linux kernel, the following vulnerability has been resolved:
HSI: ssi_protocol: fix potential resource leak in ssip_pn_open()
ssip_pn_open() claims the HSI client's port with hsi_claim_port(). When
hsi_register_port_event() gets some error and returns a negetive value,
the HSI client's port should be released with hsi_release_port().
Fix it by calling hsi_release_port() when hsi_register_port_event() fails.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025122420-CVE-2022-50708-dfe3@gregkh/T
2025-12-24
Published