NONE · 0

CVE-2022-50646

In the Linux kernel, the following vulnerability has been resolved: scsi: hpsa: Fix possible memory leak in hpsa_init_one() The hpda_alloc_ctlr_info() allocates h and its field reply_map. However, i...

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: scsi: hpsa: Fix possible memory leak in hpsa_init_one() The hpda_alloc_ctlr_info() allocates h and its field reply_map. However, in hpsa_init_one(), if alloc_percpu() failed, the hpsa_init_one() jumps to clean1 directly, which frees h and leaks the h->reply_map. Fix by calling hpda_free_ctlr_info() to release h->replay_map and h instead free h directly.

References

FAQ

What is CVE-2022-50646?

CVE-2022-50646 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: scsi: hpsa: Fix possible memory leak in hpsa_init_one() The hpda_alloc_ctlr_info() allocates h and its field reply_map. However, i...

How severe is CVE-2022-50646?

CVSS scoring is not yet available for CVE-2022-50646. Check NVD for updates.

Is there a patch for CVE-2022-50646?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.