CVE-2022-50544

MEDIUM EPSS 4.3%
Published Oct 7, 20258mo ago · Modified Jun 17, 20262w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Oct 7, 2025 8mo ago
Last Modified Jun 17, 2026 2w ago

Description

In the Linux kernel, the following vulnerability has been resolved: usb: host: xhci: Fix potential memory leak in xhci_alloc_stream_info() xhci_alloc_stream_info() allocates stream context array for stream_info ->stream_ctx_array with xhci_alloc_stream_ctx(). When some error occurs, stream_info->stream_ctx_array is not released, which will lead to a memory leak. We can fix it by releasing the stream_info->stream_ctx_array with xhci_free_stream_ctx() on the error path to avoid the potential memory leak.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
4.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-401

Affected Products 8

VendorProductVersionRange
linuxlinux_kernel*≥2.6.35  –  <4.9.331
linuxlinux_kernel*≥4.10  –  <4.14.296
linuxlinux_kernel*≥4.15  –  <4.19.262
linuxlinux_kernel*≥4.20  –  <5.4.220
linuxlinux_kernel*≥5.5  –  <5.10.150
linuxlinux_kernel*≥5.11  –  <5.15.75
linuxlinux_kernel*≥5.16  –  <5.19.17
linuxlinux_kernel*≥6.0  –  <6.0.3

References 9

  • git.kernel.org https://git.kernel.org/stable/c/782c873f8e7686f5b3c47e8b099f7e08c3dd1fdc
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7e271f42a5cc3768cd2622b929ba66859ae21f97
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7fc6bab3413e6a42bb1264ff7c9149808c93a4c7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/91271a3e772e180bbb8afb114c72fd294a02f93d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/9fa81cbd2dd300aa8fe9bac70e068b9a11cbb144
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a40ad475236022f3432880e3091c380e46e71a71
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ddab9fe76296840aad686c66888a9c1dfdbff5ff
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e702de2f5c893bf2cdb0152191f99a6ad1411823
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/fcd594da0b5955119d9707e4e0a8d0fb1c969101
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/782c873f8e7686f5b3c47e8b099f7e08c3dd1fdc
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7e271f42a5cc3768cd2622b929ba66859ae21f97
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7fc6bab3413e6a42bb1264ff7c9149808c93a4c7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/91271a3e772e180bbb8afb114c72fd294a02f93d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/9fa81cbd2dd300aa8fe9bac70e068b9a11cbb144
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a40ad475236022f3432880e3091c380e46e71a71
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ddab9fe76296840aad686c66888a9c1dfdbff5ff
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e702de2f5c893bf2cdb0152191f99a6ad1411823
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/fcd594da0b5955119d9707e4e0a8d0fb1c969101
    Patch