CVE-2022-49119

Source
https://cve.org/CVERecord?id=CVE-2022-49119
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49119.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49119
Downstream
Related
Published
2025-02-26T01:55:00.668Z
Modified
2026-04-11T12:43:38.714507Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
scsi: pm8001: Fix memory leak in pm8001_chip_fw_flash_update_req()
Details

In the Linux kernel, the following vulnerability has been resolved:

scsi: pm8001: Fix memory leak in pm8001chipfwflashupdate_req()

In pm8001chipfwflashupdatebuild(), if pm8001chipfwflashupdatebuild() fails, the struct fwcontrolex allocated must be freed.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49119.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
72d0baa089ebd058cdb8b87fde835e9157c4597a
Fixed
d83574666bac4b1462e90df393fbed6c5f57d1a3
Fixed
e5ecdb01952f230921aa8163d8d7f4c97c925ed8
Fixed
fe5b8ea5583b5c3f6f68e06acba50387edf3b5d5
Fixed
a25ed5f21f94f9ae4bcc8dd747e978668890c921
Fixed
f792a3629f4c4aa4c3703d66b43ce1edcc3ec09a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49119.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.33
Fixed
5.10.111
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.34
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.16.20
Type
ECOSYSTEM
Events
Introduced
5.17.0
Fixed
5.17.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49119.json"