CVE-2022-50707 PUBLISHED

In the Linux kernel, the following vulnerability has been resolved: virtio-crypto: fix memory leak in virtio_crypto_alg_skcipher_close_session() 'vc_ctrl_req' is alloced in virtio_crypto_alg_skcipher_close_session(), and should be freed in the invalid ctrl_status->status error handling case. Otherwise there is a memory leak.

EPSS 0.03% · 7.2th percentile

Risk Scores

EPSS Score
0.03%
7.2th percentile

Affected Products

VendorProductVersions
linuxlinux_kernel5.19, 5.19, 5.19
LinuxLinux0756ad15b1fef287d4d8fa11bc36ea77a5c42e4a, 5.19, 0

Timeline

References

Open in Interactive Console →