PT-2025-38167 · Linux+3 · Linux Kernel+3

Published

2022-09-22

·

Updated

2026-05-26

·

CVE-2022-50357

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The dwc3 get properties() function in the Linux kernel contains memory leaks during error handling. Specifically, the function calls power supply get by name(usb psy name) and requires additional cleanup on error paths to prevent resource leaks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Memory Leak

Weakness Enumeration

Related Identifiers

AZL-71842
BDU:2026-03770
CVE-2022-50357
RHSA-2023:6583
RHSA-2023_6583
SUSE-SU-2025:03615-1
SUSE-SU-2025:3761-1

Affected Products

Astra Linux
Linux Kernel
Red Hat
Suse