Wind River Support Network

HomeDefectsLIN1021-19187
Fixed

LIN1021-19187 : Security Advisory - linux - CVE-2022-50566

Created: Oct 22, 2025    Updated: Oct 26, 2025
Resolved Date: Oct 26, 2025
Found In Version: 10.21.20.1
Fix Version: 10.21.20.17
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:[EOL][EOL]mtd: Fix device name leak when register device failed in add_mtd_device()[EOL][EOL]There is a kmemleak when register device failed:[EOL]  unreferenced object 0xffff888101aab550 (size 8):[EOL]    comm "insmod", pid 3922, jiffies 4295277753 (age 925.408s)[EOL]    hex dump (first 8 bytes):[EOL]      6d 74 64 30 00 88 ff ff                          mtd0....[EOL]    backtrace:[EOL]      [<00000000bde26724>] __kmalloc_node_track_caller+0x4e/0x150[EOL]      [<000000003c32b416>] kvasprintf+0xb0/0x130[EOL]      [<000000001f7a8f15>] kobject_set_name_vargs+0x2f/0xb0[EOL]      [<000000006e781163>] dev_set_name+0xab/0xe0[EOL]      [<00000000e30d0c78>] add_mtd_device+0x4bb/0x700[EOL]      [<00000000f3d34de7>] mtd_device_parse_register+0x2ac/0x3f0[EOL]      [<00000000c0d88488>] 0xffffffffa0238457[EOL]      [<00000000b40d0922>] 0xffffffffa02a008f[EOL]      [<0000000023d17b9d>] do_one_initcall+0x87/0x2a0[EOL]      [<00000000770f6ca6>] do_init_module+0xdf/0x320[EOL]      [<000000007b6768fe>] load_module+0x2f98/0x3330[EOL]      [<00000000346bed5a>] __do_sys_finit_module+0x113/0x1b0[EOL]      [<00000000674c2290>] do_syscall_64+0x35/0x80[EOL]      [<000000004c6a8d97>] entry_SYSCALL_64_after_hwframe+0x46/0xb0[EOL][EOL]If register device failed, should call put_device() to give up the[EOL]reference.

CVEs


Live chat
Online