PT-2025-53972 · Linux · Linux Kernel
Published
2022-10-20
·
Updated
2025-12-30
·
CVE-2022-50854
CVSS v2.0
4.3
Medium
| Vector | AV:A/AC:H/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The Linux kernel contains a memory leak in the
virtual nci send() function within the NFC subsystem. Specifically, the skb (socket buffer) is not freed, leading to a memory leak reported by kmemleak. This issue can be reproduced using the nci dev tool in the tools/testing/selftests/nci directory. The backtrace indicates the issue originates from memory allocation within the NFC device up process.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel