PT-2025-49625 · Linux+1 · Linux Kernel+1

CVE-2022-50645

·

Published

2022-11-28

·

Updated

2025-12-22

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A reference count leak exists in the pci get dev wrapper() function within the EDAC/i10nm module of the Linux kernel. The issue stems from an unnecessary call to pci dev get() in pci get dev wrapper(), as the pci get domain bus and slot() function already increments the PCI device's reference count. This leads to a memory leak when the PCI device is released in the error path.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Release of Resource after Effective Lifetime

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-10376
CVE-2022-50645
RHSA-2023:6583
RHSA-2023:7370

Affected Products

Linux Kernel
Red Hat