CVE-2022-50809 — Missing Release of Resource after Effective Lifetime in Linux
Severity
5.5MEDIUM
No vectorEPSS
0.0%
top 92.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 30
Description
In the Linux kernel, the following vulnerability has been resolved:
xhci: dbc: Fix memory leak in xhci_alloc_dbc()
If DbC is already in use, then the allocated memory for the xhci_dbc struct
doesn't get freed before returning NULL, which leads to a memleak.
Affected Packages4 packages
▶CVEListV5linux/linuxd7afb4a13f6c6ee7df7d0bfc67b4ef19ece6d802 — 103b459590e1eb4d80b02761eb36c7cae1d9b58e+4
🔴Vulnerability Details
3OSV▶
CVE-2022-50809: In the Linux kernel, the following vulnerability has been resolved: xhci: dbc: Fix memory leak in xhci_alloc_dbc() If DbC is already in use, then the↗2025-12-30
GHSA▶
GHSA-6ph6-qmh9-c936: In the Linux kernel, the following vulnerability has been resolved:
xhci: dbc: Fix memory leak in xhci_alloc_dbc()
If DbC is already in use, then th↗2025-12-30