PT-2025-38021 · Linux+2 · Linux Kernel+2
Published
2022-10-19
·
Updated
2025-11-14
·
CVE-2022-50352
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The Linux kernel contains a flaw in the
hnae ae register() function within the networking subsystem. A memory leak can occur during module probing if device register() fails, but the reference count of the kobject is not decremented to zero, leading to a leaked name allocated in dev set name(). This is resolved by calling put device(), which frees the name in the kobject cleanup() callback function.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Missing Release of Resource after Effective Lifetime
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse