-

CVE-2022-50074

In the Linux kernel, the following vulnerability has been resolved:

apparmor: Fix memleak in aa_simple_write_to_buffer()

When copy_from_user failed, the memory is freed by kvfree. however the
management struct and data blob are allocated independently, so only
kvfree(data) cause a memleak issue here. Use aa_put_loaddata(data) to
fix this issue.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 6500eb3a48ac221051b1791818a1ac74744ef617
Version a6a52579e52b55448326db88bd9a5740e7c1a037
Status affected
Version < 7db182a2ebeefded86fea542fcc5d6a68bb77f58
Version a6a52579e52b55448326db88bd9a5740e7c1a037
Status affected
Version < 8aab4295582eb397a125d2788b829fa62b88dbf7
Version a6a52579e52b55448326db88bd9a5740e7c1a037
Status affected
Version < bf7ebebce2c25071c719fd8a2f1307e0c243c2d7
Version a6a52579e52b55448326db88bd9a5740e7c1a037
Status affected
Version < 6583edbf459de2e06b9759f264c0ae27e452b97a
Version a6a52579e52b55448326db88bd9a5740e7c1a037
Status affected
Version < 417ea9fe972d2654a268ad66e89c8fcae67017c3
Version a6a52579e52b55448326db88bd9a5740e7c1a037
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 4.17
Status affected
Version < 4.17
Version 0
Status unaffected
Version <= 4.19.*
Version 4.19.256
Status unaffected
Version <= 5.4.*
Version 5.4.211
Status unaffected
Version <= 5.10.*
Version 5.10.138
Status unaffected
Version <= 5.15.*
Version 5.15.63
Status unaffected
Version <= 5.19.*
Version 5.19.4
Status unaffected
Version <= *
Version 6.0
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.094
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String