PT-2025-38021 · Linux+2 · Linux Kernel+2

Published

2022-10-19

·

Updated

2025-11-14

·

CVE-2022-50352

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw in the hnae ae register() function within the networking subsystem. A memory leak can occur during module probing if device register() fails, but the reference count of the kobject is not decremented to zero, leading to a leaked name allocated in dev set name(). This is resolved by calling put device(), which frees the name in the kobject cleanup() callback function.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Release of Resource after Effective Lifetime

Memory Leak

Weakness Enumeration

Related Identifiers

BDU:2026-02434
CVE-2022-50352
OESA-2025-2659
SUSE-SU-2025:03614-1

Affected Products

Astra Linux
Linux Kernel
Suse