CVE-2022-50449

MEDIUM

Linux Kernel - Use-After-Free in clk samsung pll registration

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: clk: samsung: Fix memory leak in _samsung_clk_register_pll() If clk_register() fails, @pll->rate_table may have allocated memory by kmemdup(), so it needs to be freed, otherwise will cause memory leak issue, this patch fixes it.

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 4.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-401
Status published
Products (26)
linux/Kernel 3.12.0 - 4.14.303linux
linux/Kernel 4.15.0 - 4.19.270linux
linux/Kernel 4.20.0 - 5.4.229linux
linux/Kernel 5.11.0 - 5.15.86linux
linux/Kernel 5.16.0 - 6.0.16linux
linux/Kernel 5.5.0 - 5.10.163linux
linux/Kernel 6.1.0 - 6.1.2linux
Linux/Linux < 3.12
Linux/Linux 3.12
Linux/Linux 3ff6e0d8d64d594a551b5c4904e4b617bf7eee22 - 2e8dc0626fe86ae08914478dec1419618c557bc0
... and 16 more
Published Oct 01, 2025
Tracked Since Feb 18, 2026