CVE-2022-49358

MEDIUM

Linux Kernel - Memory Leak

Title source: llm

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: memleak flow rule from commit path Abort path release flow rule object, however, commit path does not. Update code to destroy these objects before releasing the transaction.

Scores

CVSS v3 5.5
EPSS 0.0003
EPSS Percentile 10.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-401
Status published

Affected Products (7)

linux/linux_kernel < 5.4.198
linux/linux_kernel
linux/Kernel < 5.4.198linux
linux/Kernel < 5.10.122linux
linux/Kernel < 5.15.47linux
linux/Kernel < 5.17.15linux
linux/Kernel < 5.18.4linux

Timeline

Published Feb 26, 2025
Tracked Since Feb 18, 2026