CVE-2022-50707

Linux Kernel - Memory Leak in virtio-crypto Session Closure

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: virtio-crypto: fix memory leak in virtio_crypto_alg_skcipher_close_session() 'vc_ctrl_req' is alloced in virtio_crypto_alg_skcipher_close_session(), and should be freed in the invalid ctrl_status->status error handling case. Otherwise there is a memory leak.

Scores

EPSS 0.0018
EPSS Percentile 7.2%

Details

Status published
Products (11)
linux/Kernel 5.19.0 - 6.0.19linux
linux/Kernel 6.1.0 - 6.1.5linux
Linux/Linux < 5.19
Linux/Linux 0756ad15b1fef287d4d8fa11bc36ea77a5c42e4a - 0871df190fe6723464efe0f493d476411616f553
Linux/Linux 0756ad15b1fef287d4d8fa11bc36ea77a5c42e4a - 67fb59ff1384e338679c0eb7a43c83ce8868c9fa
Linux/Linux 0756ad15b1fef287d4d8fa11bc36ea77a5c42e4a - b1d65f717cd6305a396a8738e022c6f7c65cfbe8
Linux/Linux 4ee475e76b5ea8061970a7c867ffa5eedeb39580 - 79026a2d0a1b080257773d22a493f9bcab8c65be
Linux/Linux 5.19
Linux/Linux 6.0.19 - 6.0.*
Linux/Linux 6.1.5 - 6.1.*
... and 1 more
Published Dec 24, 2025
Tracked Since Feb 18, 2026