-

CVE-2022-50670

In the Linux kernel, the following vulnerability has been resolved:

mmc: omap_hsmmc: fix return value check of mmc_add_host()

mmc_add_host() may return error, if we ignore its return value,
it will lead two issues:
1. The memory that allocated in mmc_alloc_host() is leaked.
2. In the remove() path, mmc_remove_host() will be called to
   delete device, but it's not added yet, it will lead a kernel
   crash because of null-ptr-deref in device_del().

Fix this by checking the return value and goto error path wihch
will call mmc_free_host().
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < f153c9e15f8961bdf38707853e15b42ea7c691d9
Version a45c6cb816474cefe56059fce422a9bdcd77e0dc
Status affected
Version < fb3d596267a98813a7a8206097d8d46c98505a0d
Version a45c6cb816474cefe56059fce422a9bdcd77e0dc
Status affected
Version < 62005dfcc396424db3337a1dc3ab49623537f5e5
Version a45c6cb816474cefe56059fce422a9bdcd77e0dc
Status affected
Version < a5f8a4583280a76e50329b910e91ef1dea1e6c79
Version a45c6cb816474cefe56059fce422a9bdcd77e0dc
Status affected
Version < 4e1dc24bcfc8257f24c0663badec7e4f3ae80558
Version a45c6cb816474cefe56059fce422a9bdcd77e0dc
Status affected
Version < a525cad241c339ca00bf7ebf03c5180f2a9b767c
Version a45c6cb816474cefe56059fce422a9bdcd77e0dc
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 2.6.29
Status affected
Version < 2.6.29
Version 0
Status unaffected
Version <= 5.4.*
Version 5.4.229
Status unaffected
Version <= 5.10.*
Version 5.10.163
Status unaffected
Version <= 5.15.*
Version 5.15.86
Status unaffected
Version <= 6.0.*
Version 6.0.16
Status unaffected
Version <= 6.1.*
Version 6.1.2
Status unaffected
Version <= *
Version 6.2
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.058
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String