CVE Database
/

CVE-2022-50046

Back to search

CVE-2022-50046

Published: Jun 18, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net/sunrpc: fix potential memory leaks in rpc_sysfs_xprt_state_change() The issue happens on some error handling paths. When the function fails to grab the object `xprt`, it simply returns 0, forgetting to decrease the reference count of another object `xps`, which is increased by rpc_sysfs_xprt_kobj_get_xprt_switch(), causing refcount leaks. Also, the function forgets to check whether `xps` is valid before using it, which may result in NULL-dereferencing issues. Fix it by adding proper error handling code when either `xprt` or `xps` is NULL.

VendorProductVersions

Linux

Linux

affected
5b7eb78486cd9ac58bfbd6d84ea0fe2d9fead03b - < c0434f0e058648649250b8ed6078b66d773de723
affected
5b7eb78486cd9ac58bfbd6d84ea0fe2d9fead03b - < 76fbeb1662b1c56514325118a07fba74dc4c79fe
affected
5b7eb78486cd9ac58bfbd6d84ea0fe2d9fead03b - < bfc48f1b0505ffcb03a6d749139b7577d6b81ae0

Linux

Linux

affected
5.14
unaffected
0 - < 5.14
unaffected
5.15.63 - <= 5.15.*
unaffected
5.19.4 - <= 5.19.*
unaffected
6.0 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now