PT-2025-49612 · Linux+1 · Linux Kernel+1

CVE-2022-50632

·

Publicado

2022-11-15

·

Atualizado

2025-12-22

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel related to hotplug callback handling within the marvell cn10k driver. Specifically, the tad pmu init() function does not remove a callback added by cpuhp setup state multi() when platform driver registration fails. This results in a hotplug callback leak. The issue is similar to a previous fix for arm ccn init(). The vulnerable function is tad pmu init().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Release of Resource after Effective Lifetime

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-10364
CVE-2022-50632
RHSA-2023:6583

Produtos afetados

Linux Kernel
Marvell Cn10K