CVE-2022-50836
published 2025-12-30CVE-2022-50836: In the Linux kernel, the following vulnerability has been resolved: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev() The kfree() should be…
PriorityP416low3.3
EPSS
0.22%
12.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() should be called when of_irq_get_byname() fails or
devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(),
otherwise there will be a memory leak, so add kfree() to fix it.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.4-1 (bookworm) | linux 6.1.4-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 027045a6e2b7cd81216e8a559534a30fb0782702 < 27441fab2651cd909d8a5440ca079bc50245f427 | 27441fab2651cd909d8a5440ca079bc50245f427 |
| linux | linux | >= 027045a6e2b7cd81216e8a559534a30fb0782702 < e4539eb5c0c342567183fe386d0699c8dab49490 | e4539eb5c0c342567183fe386d0699c8dab49490 |
| linux | linux | >= 027045a6e2b7cd81216e8a559534a30fb0782702 < 131c0a3ead78d45f0f39ddb42cf1bd9be26239b0 | 131c0a3ead78d45f0f39ddb42cf1bd9be26239b0 |
| linux | linux | >= 027045a6e2b7cd81216e8a559534a30fb0782702 < 1a62bebe0705556d37cfa8409ddc759b11d404f6 | 1a62bebe0705556d37cfa8409ddc759b11d404f6 |
| linux | linux | >= 027045a6e2b7cd81216e8a559534a30fb0782702 < ec97e9a5c2f25d2f9f9d7005e9ac67f23cc751cd | ec97e9a5c2f25d2f9f9d7005e9ac67f23cc751cd |
| linux | linux | >= 027045a6e2b7cd81216e8a559534a30fb0782702 < e01ce676aaef3b13d02343d7e70f9637d93a3367 | e01ce676aaef3b13d02343d7e70f9637d93a3367 |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 5.1.0 < 5.4.229 | 5.4.229 |
| linux | linux_kernel | >= 5.11.0 < 5.15.86 | 5.15.86 |
| linux | linux_kernel | >= 5.16.0 < 6.0.16 | 6.0.16 |
| linux | linux_kernel | >= 5.5.0 < 5.10.163 | 5.10.163 |
| linux | linux_kernel | >= 6.1.0 < 6.1.2 | 6.1.2 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
osv·2025-12-30
CVE-2022-50836 remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() should be called when of_irq_get_byname() fails or
devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(),
otherwise there will be a memory leak, so add kfree() to fix it.
OSV
CVE-2022-50836: In the Linux kernel, the following vulnerability has been resolved: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev() The kfree() should
osv·2025-12-30
CVE-2022-50836 CVE-2022-50836: In the Linux kernel, the following vulnerability has been resolved: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev() The kfree() should
In the Linux kernel, the following vulnerability has been resolved: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev() The kfree() should be called when of_irq_get_byname() fails or devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(), otherwise there will be a memory leak, so add kfree() to fix it.
GHSA
GHSA-c5c5-86g3-j5v4: In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() shou
ghsa_unreviewed·2025-12-30
CVE-2022-50836 GHSA-c5c5-86g3-j5v4: In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() shou
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() should be called when of_irq_get_byname() fails or
devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(),
otherwise there will be a memory leak, so add kfree() to fix it.
Red Hat
kernel: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
vendor_redhat·2025-12-30·CVSS 3.3
CVE-2022-50836 [LOW] CWE-401 kernel: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
kernel: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() should be called when of_irq_get_byname() fails or
devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(),
otherwise there will be a memory leak, so add kfree() to fix it.
Statement: A memory leak occurs in qcom_add_sysmon_subdev when the sysmon structure is allocated but not freed if shutdown irq lookup fails or if devm_request_threaded_irq fails. This can lead to gradual memory consumption if the code path is exercised repeatedly through repeated remoteproc bring up attempts or error recovery loops. The issue is local to the host system because it requires access to
Debian
CVE-2022-50836: linux - In the Linux kernel, the following vulnerability has been resolved: remoteproc:...
vendor_debian·2022
CVE-2022-50836 CVE-2022-50836: linux - In the Linux kernel, the following vulnerability has been resolved: remoteproc:...
In the Linux kernel, the following vulnerability has been resolved: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev() The kfree() should be called when of_irq_get_byname() fails or devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(), otherwise there will be a memory leak, so add kfree() to fix it.
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.4-1)
sid: resolved (fixed in 6.1.4-1)
trixie: resolved (fixed in 6.1.4-1)
No detection rules found.
No public exploits indexed.
Wiz
CVE-2022-50836 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2022-50836 CVE-2022-50836 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2022-50836 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() should be called when of_irq_get_byname() fails or
devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(),
otherwise there will be a memory leak, so add kfree() to fix it.
Source : NVD
Published December 30, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 10.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
linux-azure-fips
dlm-kmp-default
Sources
NVD
Debian 11, 12, 13, 14 Has
Bugzilla
CVE-2022-50836 kernel: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
bugzilla·2025-12-30
CVE-2022-50836 [LOW] CVE-2022-50836 kernel: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
CVE-2022-50836 kernel: remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: sysmon: fix memory leak in qcom_add_sysmon_subdev()
The kfree() should be called when of_irq_get_byname() fails or
devm_request_threaded_irq() fails in qcom_add_sysmon_subdev(),
otherwise there will be a memory leak, so add kfree() to fix it.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025123018-CVE-2022-50836-c8e4@gregkh/T
https://git.kernel.org/stable/c/131c0a3ead78d45f0f39ddb42cf1bd9be26239b0https://git.kernel.org/stable/c/1a62bebe0705556d37cfa8409ddc759b11d404f6https://git.kernel.org/stable/c/27441fab2651cd909d8a5440ca079bc50245f427https://git.kernel.org/stable/c/e01ce676aaef3b13d02343d7e70f9637d93a3367https://git.kernel.org/stable/c/e4539eb5c0c342567183fe386d0699c8dab49490https://git.kernel.org/stable/c/ec97e9a5c2f25d2f9f9d7005e9ac67f23cc751cd
2025-12-30
Published