CVE-2022-49126

MEDIUM

Linux Kernel < 5.15.34 - Use-After-Free in SCSI MPI3MR Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix memory leaks Fix memory leaks related to operational reply queue's memory segments which are not getting freed while unloading the driver.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-401
Status published
Products (14)
linux/Kernel 5.14.0 - 5.15.34linux
linux/Kernel 5.16.0 - 5.16.20linux
linux/Kernel 5.17.0 - 5.17.3linux
Linux/Linux < 5.14
Linux/Linux 5.14
Linux/Linux 5.15.34 - 5.15.*
Linux/Linux 5.16.20 - 5.16.*
Linux/Linux 5.17.3 - 5.17.*
Linux/Linux 5.18
Linux/Linux c4f7ac64616ee513f9ac4ae6c4d8c3cccb6974df - 27fc9e90171ab0a94a411f3fdb3522ef5acb9537
... and 4 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026