PT-2025-41026 · Linux+1 · Linux Kernel+1

Published

2022-11-29

·

Updated

2025-12-04

·

CVE-2022-50521

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak exists in the mxm wmi call mxds|mx function within the x86 platform component of the Linux kernel. The ACPI buffer memory returned by the wmi evaluate method() function is not freed after the function call, leading to a memory leak. The issue is addressed by passing NULL to wmi evaluate method() as the method results in the ACPI buffer not being used.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Weakness Enumeration

Related Identifiers

BDU:2025-12796
CVE-2022-50521
OESA-2025-2468
SUSE-SU-2025:4111-1
SUSE-SU-2025:4139-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4320-1

Affected Products

Linux Kernel
Suse