PT-2025-49612 · Linux+1 · Linux Kernel+1

CVE-2022-50632

·

Published

2022-11-15

·

Updated

2025-12-22

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel related to hotplug callback handling within the marvell cn10k driver. Specifically, the tad pmu init() function does not remove a callback added by cpuhp setup state multi() when platform driver registration fails. This results in a hotplug callback leak. The issue is similar to a previous fix for arm ccn init(). The vulnerable function is tad pmu init().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Release of Resource after Effective Lifetime

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-10364
CVE-2022-50632
RHSA-2023:6583

Affected Products

Linux Kernel
Marvell Cn10K