PT-2025-18497 · Linux+2 · Linux Kernel+2

Published

2022-11-17

·

Updated

2025-07-16

·

CVE-2022-49780

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A possible name leak issue has been resolved in the Linux kernel, specifically in the tcm loop setup hba bus() function. If device register() fails, the name allocated by dev set name() needs to be freed. To fix this, put device() is called to give up the reference in the error path, allowing the name to be freed in kobject cleanup().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Allocation of Resources Without Limits

Memory Leak

Weakness Enumeration

Related Identifiers

BDU:2026-03719
CVE-2022-49780
SUSE-SU-2025:02334-1
SUSE-SU-2025_02334-1

Affected Products

Astra Linux
Linux Kernel
Suse