PT-2025-18504 · Linux+3 · Linux Kernel+3
Published
2022-11-16
·
Updated
2025-07-10
·
CVE-2022-49787
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A memory leak issue has been identified in the Linux kernel, specifically in the sdhci-pci component. The problem arises from a missing
pci dev put() call, which is necessary to decrease the reference count for the pci dev returned by pci get device(). This issue is resolved by ensuring that pci dev put() is called before amd probe() returns, handling the case where smbus dev is NULL.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Red Hat
Suse