VulnerabilityModified
CVE-2022-49857
In the Linux kernel, the following vulnerability has been resolved: net: marvell: prestera: fix memory leak in prestera_rxtx_switch_init() When prestera_sdma_switch_init() failed, the memory pointed to by sw->rxtx isn't released.
MEDIUM 5.5EPSS 0.19%
Does this matter?
Lower severity and a low EPSS score (0.19%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: net: marvell: prestera: fix memory leak in prestera_rxtx_switch_init() When prestera_sdma_switch_init() failed, the memory pointed to by sw->rxtx isn't released. Fix it. Only be compiled, not be tested.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.19% probability · 9th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/31e5084ac6876e52dbb0a1cc4fc18b6c79979f31Patch
- https://git.kernel.org/stable/c/409731df6310a33f4d0a3ef594d2410cdcd637f2Patch
- https://git.kernel.org/stable/c/519b58bbfa825f042fcf80261cc18e1e35f85ffdPatch
- https://git.kernel.org/stable/c/5333cf1b7f6861912aff6263978d4781f9858e47Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.