CVE-2022-49119
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Feb 26, 2025
Updated: Mar 13, 2025
CWE ID 401
Summary
CVE-2022-49119 is a vulnerability affecting the Linux kernel. It involves a memory leak issue in the pm8001 driver's pm8001_chip_fw_flash_update_req() function. When the pm8001_chip_fw_flash_update_build() function fails, the allocated struct fw_control_ex is not freed, resulting in a memory leak. This oversight could potentially lead to denial-of-service attacks or other unintended consequences. Linux users are advised to apply the necessary patch to resolve this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.