-

CVE-2022-50858

In the Linux kernel, the following vulnerability has been resolved:

mmc: alcor: fix return value check of mmc_add_host()

mmc_add_host() may return error, if we ignore its return value, the memory
that allocated in mmc_alloc_host() will be leaked and it will lead a kernel
crash because of deleting not added device in the remove path.

So fix this by checking the return value and calling mmc_free_host() in the
error path.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 289c964fe182ce755044a6cd57698072e12ffa6f
Version c5413ad815a675b5c98a002353d8e96b44b164e9
Status affected
Version < 4a6e5d0222804a3eaf2ea4cf893f412e7cf98cb2
Version c5413ad815a675b5c98a002353d8e96b44b164e9
Status affected
Version < 29c5b4da41f35108136d843c7432885c78cf8272
Version c5413ad815a675b5c98a002353d8e96b44b164e9
Status affected
Version < 48dc06333d75f41c2ce9ba954bc3231324b45914
Version c5413ad815a675b5c98a002353d8e96b44b164e9
Status affected
Version < 60fafcf2fb7ee9a4125dc9a86eeb9d490acf23e2
Version c5413ad815a675b5c98a002353d8e96b44b164e9
Status affected
Version < e93d1468f429475a753d6baa79b853b7ee5ef8c0
Version c5413ad815a675b5c98a002353d8e96b44b164e9
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.0
Status affected
Version < 5.0
Version 0
Status unaffected
Version <= 5.4.*
Version 5.4.229
Status unaffected
Version <= 5.10.*
Version 5.10.163
Status unaffected
Version <= 5.15.*
Version 5.15.86
Status unaffected
Version <= 6.0.*
Version 6.0.16
Status unaffected
Version <= 6.1.*
Version 6.1.2
Status unaffected
Version <= *
Version 6.2
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.099
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.