CVE-2022-49627

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-49627
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49627.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49627
Downstream
Related
Published
2025-02-26T07:01:38Z
Modified
2025-08-09T20:01:28Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

In the Linux kernel, the following vulnerability has been resolved:

ima: Fix potential memory leak in imainitcrypto()

On failure to allocate the SHA1 tfm, IMA fails to initialize and exits without freeing the imaalgoarray. Add the missing kfree() for imaalgoarray to avoid the potential memory leak.

References

Affected packages