CVE-2022-50857
Last modified
CVE-2022-50857 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: rapidio: rio: fix possible name leak in rio_register_mport() If device_register() returns error, the name allocated by dev_set_name() need be freed. It should use put_device() to give up the reference in the error path, so that the name can be freed in kobject_cleanup(), and list_del() is called to delete the port from rio_mports.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: rapidio: rio: fix possible name leak in rio_register_mport() If device_register() returns error, the name allocated by dev_set_name() need be freed. It should use put_device() to give up the reference in the error path, so that the name can be freed in kobject_cleanup(), and list_del() is called to delete the port from rio_mports.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < 0a71344f99289250e4d5b8adbac76f444485c840; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < 117fede82e9d6ea3de30746d500eb5edc2eb8310; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < a73a626c0510d203e369aeb26c4d6ec9c75af027; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < 1bbad5793f404cf218757e3beb600eca6080330f; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < 97d9eb45ffa67ffa112a6659953321b8f7db0065; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < a47de2fd3f88a7788be19f94ade72c2244a98045; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < 4ddbeae5f224d924cf0b12460dda88c7480aa452; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < 9abba4aa60874c5216fc8de7dededadc791de696; >= 2aaf308b95b24649a6dcfed89cd956e972089b2a, < e92a216d16bde65d21a3227e0fb2aa0794576525 |
| Linux | Linux | 3.15 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2022-50857?
How severe is CVE-2022-50857?
How do I fix CVE-2022-50857?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-50851In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50852In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50853In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50854In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50855In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50856In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50858In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50859In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50860In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2022-50861In the Linux kernel, the following vulnerability has been re…7.5
- CVE-2022-50862In the Linux kernel, the following vulnerability has been re…
- CVE-2022-50863In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2022-50857?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
