CVE-2022-50882 — Missing Release of Resource after Effective Lifetime in Linux
Severity
3.3LOW
No vectorEPSS
0.0%
top 92.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 30
Description
In the Linux kernel, the following vulnerability has been resolved:
media: uvcvideo: Fix memory leak in uvc_gpio_parse
Previously the unit buffer was allocated before checking the IRQ for
privacy GPIO. In case of error, the unit buffer was leaked.
Allocate the unit buffer after the IRQ to avoid it.
Addresses-Coverity-ID: 1474639 ("Resource leak")
Affected Packages4 packages
▶CVEListV5linux/linux2886477ff98740cc3333cf785e4de0b1ff3d7a28 — 6c5da92103bddd1f0c36cb69446ff7cae3043986+4
🔴Vulnerability Details
3GHSA▶
GHSA-7rr3-6945-h32g: In the Linux kernel, the following vulnerability has been resolved:
media: uvcvideo: Fix memory leak in uvc_gpio_parse
Previously the unit buffer wa↗2025-12-30
OSV▶
CVE-2022-50882: In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix memory leak in uvc_gpio_parse Previously the unit buffer was↗2025-12-30