CVE-2022-50856 — Missing Release of Resource after Effective Lifetime in Linux
Severity
3.3LOW
No vectorEPSS
0.0%
top 92.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 30
Description
In the Linux kernel, the following vulnerability has been resolved:
cifs: Fix xid leak in cifs_ses_add_channel()
Before return, should free the xid, otherwise, the
xid will be leaked.
Affected Packages4 packages
▶CVEListV5linux/linuxd70e9fa55884760b6d6c293dbf20d8c52ce11fb7 — 7286f875510486fdc2fc426b7c826262e2283a65+4
🔴Vulnerability Details
3GHSA▶
GHSA-x898-8j83-7w6w: In the Linux kernel, the following vulnerability has been resolved:
cifs: Fix xid leak in cifs_ses_add_channel()
Before return, should free the xid,↗2025-12-30
OSV▶
CVE-2022-50856: In the Linux kernel, the following vulnerability has been resolved: cifs: Fix xid leak in cifs_ses_add_channel() Before return, should free the xid, o↗2025-12-30