CVE-2022-50138

In the Linux kernel, the following vulnerability has been resolved: RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr() __qedr_alloc_mr() allocates a memory chunk for "mr->info.pbl_table" with init_mr_info(). When rdma_alloc_tid() and rdma_register_tid() fail, "mr" is released while "mr->info.pbl_table" is not released, which will lead to a memory leak. We should release the "mr->info.pbl_table" with qedr_free_pbl() when error occurs to fix the memory leak.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

18 Nov 2025, 02:59

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: RDMA/qedr: Se corrige una posible fuga de memoria en __qedr_alloc_mr(). __qedr_alloc_mr() asigna un fragmento de memoria para "mr->info.pbl_table" con init_mr_info(). Cuando fallan rdma_alloc_tid() y rdma_register_tid(), se libera "mr" mientras que "mr->info.pbl_table" no, lo que provoca una fuga de memoria. Deberíamos liberar "mr->info.pbl_table" con qedr_free_pbl() cuando se produzca el error para corregir la fuga de memoria.
First Time Linux
Linux linux Kernel
CWE CWE-401
References () https://git.kernel.org/stable/c/07ba048df306dc93fc4d2ef670b9e24644a2069f - () https://git.kernel.org/stable/c/07ba048df306dc93fc4d2ef670b9e24644a2069f - Patch
References () https://git.kernel.org/stable/c/79ce50dddaf28b5c57911ecc80a2be17a0b17f83 - () https://git.kernel.org/stable/c/79ce50dddaf28b5c57911ecc80a2be17a0b17f83 - Patch
References () https://git.kernel.org/stable/c/7e647a8d5fc0a2c8e0f36f585a6388286a25bb15 - () https://git.kernel.org/stable/c/7e647a8d5fc0a2c8e0f36f585a6388286a25bb15 - Patch
References () https://git.kernel.org/stable/c/b3236a64ddd125a455ef5b5316c1b9051b732974 - () https://git.kernel.org/stable/c/b3236a64ddd125a455ef5b5316c1b9051b732974 - Patch
References () https://git.kernel.org/stable/c/b4c9f7db9f0148423557539af0fdf513338efe08 - () https://git.kernel.org/stable/c/b4c9f7db9f0148423557539af0fdf513338efe08 - Patch

18 Jun 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-18 11:15

Updated : 2025-11-18 02:59


NVD link : CVE-2022-50138

Mitre link : CVE-2022-50138

CVE.ORG link : CVE-2022-50138


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-401

Missing Release of Memory after Effective Lifetime