CVE-2022-50751Missing Release of Resource after Effective Lifetime in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: configfs: fix possible memory leak in configfs_create_dir() kmemleak reported memory leaks in configfs_create_dir(): unreferenced object 0xffff888009f6af00 (size 192): comm "modprobe", pid 3777, jiffies 4295537735 (age 233.784s) backtrace: kmem_cache_alloc (mm/slub.c:3250 mm/slub.c:3256 mm/slub.c:3263 mm/slub.c:3273) new_fragment (./include/linux/slab.h:600 fs/configfs/dir.c:163) configfs_register_subsystem (fs/configfs/dir.c

Affected Packages4 packages

Linuxlinux/linux_kernel2.6.165.4.229+4
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linux7063fbf2261194f72ee75afca67b3b38b554b5fa90c38f57a821499391526b15cc944c265bd24e48+6
debiandebian/linux< linux 6.1.4-1 (bookworm)

🔴Vulnerability Details

3
GHSA
GHSA-7px2-rh6v-wcpc: In the Linux kernel, the following vulnerability has been resolved: configfs: fix possible memory leak in configfs_create_dir() kmemleak reported me2025-12-24
OSV
configfs: fix possible memory leak in configfs_create_dir()2025-12-24
OSV
CVE-2022-50751: In the Linux kernel, the following vulnerability has been resolved: configfs: fix possible memory leak in configfs_create_dir() kmemleak reported memo2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel (configfs): Denial of Service due to memory leak via incorrect reference counting2025-12-24
Debian
CVE-2022-50751: linux - In the Linux kernel, the following vulnerability has been resolved: configfs: f...2022

🕵️Threat Intelligence

1
Wiz
CVE-2022-50751 Impact, Exploitability, and Mitigation Steps | Wiz