CVE-2022-50759
published 2025-12-24CVE-2022-50759: In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5648: Free V4L2 fwnode data on unbind The V4L2 fwnode data structure doesn't…
PriorityP421medium5.3
EPSS
0.21%
11.9th percentile
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structure doesn't get freed on unbind, which leads to
a memleak.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.4-1 (bookworm) | linux 6.1.4-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= e43ccb0a045f34838b786e8021dc4838b4af5c38 < 4a34fd4d9b548789d4a2018940edbec86282ed3b | 4a34fd4d9b548789d4a2018940edbec86282ed3b |
| linux | linux | >= e43ccb0a045f34838b786e8021dc4838b4af5c38 < 3a54b72868930f07935accaf95ec4df639324940 | 3a54b72868930f07935accaf95ec4df639324940 |
| linux | linux | >= e43ccb0a045f34838b786e8021dc4838b4af5c38 < c95770e4fc172696dcb1450893cda7d6324d96fc | c95770e4fc172696dcb1450893cda7d6324d96fc |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 5.12.0 < 6.0.16 | 6.0.16 |
| linux | linux_kernel | >= 6.1.0 < 6.1.2 | 6.1.2 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
media: i2c: ov5648: Free V4L2 fwnode data on unbind
osv·2025-12-24
CVE-2022-50759 media: i2c: ov5648: Free V4L2 fwnode data on unbind
media: i2c: ov5648: Free V4L2 fwnode data on unbind
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structure doesn't get freed on unbind, which leads to
a memleak.
GHSA
GHSA-h32w-qx2f-cqqg: In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structu
ghsa_unreviewed·2025-12-24
CVE-2022-50759 GHSA-h32w-qx2f-cqqg: In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structu
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structure doesn't get freed on unbind, which leads to
a memleak.
OSV
CVE-2022-50759: In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5648: Free V4L2 fwnode data on unbind The V4L2 fwnode data structure
osv·2025-12-24
CVE-2022-50759 CVE-2022-50759: In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5648: Free V4L2 fwnode data on unbind The V4L2 fwnode data structure
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5648: Free V4L2 fwnode data on unbind The V4L2 fwnode data structure doesn't get freed on unbind, which leads to a memleak.
Red Hat
kernel: media: i2c: ov5648: Free V4L2 fwnode data on unbind
vendor_redhat·2025-12-24
CVE-2022-50759 kernel: media: i2c: ov5648: Free V4L2 fwnode data on unbind
kernel: media: i2c: ov5648: Free V4L2 fwnode data on unbind
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structure doesn't get freed on unbind, which leads to
a memleak.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2022-50759: linux - In the Linux kernel, the following vulnerability has been resolved: media: i2c:...
vendor_debian·2022
CVE-2022-50759 CVE-2022-50759: linux - In the Linux kernel, the following vulnerability has been resolved: media: i2c:...
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5648: Free V4L2 fwnode data on unbind The V4L2 fwnode data structure doesn't get freed on unbind, which leads to a memleak.
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: resolved
forky: resolved (fixed in 6.1.4-1)
sid: resolved (fixed in 6.1.4-1)
trixie: resolved (fixed in 6.1.4-1)
No detection rules found.
No public exploits indexed.
Wiz
CVE-2022-50759 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.3
CVE-2022-50759 [MEDIUM] CVE-2022-50759 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2022-50759 :
Linux Debian vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structure doesn't get freed on unbind, which leads to
a memleak.
Source : NVD
Published December 24, 2025
CNA Score N/A
Affected Technologies
Linux Debian
Linux Ubuntu
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
linux-azure-fde
linux-fips
Sources
NVD
Debian 12, 13, 14 Has Fix Added at: Dec 26, 2025
Echo Has Fix Added at: Dec 26, 2025
Ubuntu 16.04, 18.04, 20.04 Severity MEDIUM No Fix Added at: Dec
Bugzilla
CVE-2022-50759 kernel: media: i2c: ov5648: Free V4L2 fwnode data on unbind
bugzilla·2025-12-24
CVE-2022-50759 CVE-2022-50759 kernel: media: i2c: ov5648: Free V4L2 fwnode data on unbind
CVE-2022-50759 kernel: media: i2c: ov5648: Free V4L2 fwnode data on unbind
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov5648: Free V4L2 fwnode data on unbind
The V4L2 fwnode data structure doesn't get freed on unbind, which leads to
a memleak.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025122454-CVE-2022-50759-747e@gregkh/T
2025-12-24
Published