CVE-2022-49881

Source
https://cve.org/CVERecord?id=CVE-2022-49881
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49881.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49881
Downstream
Related
Published
2025-05-01T14:10:28.610Z
Modified
2026-03-20T12:22:29.772137Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
wifi: cfg80211: fix memory leak in query_regdb_file()
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: cfg80211: fix memory leak in queryregdbfile()

In the function queryregdbfile() the alpha2 parameter is duplicated using kmemdup() and subsequently freed in regdbfwcb(). However, requestfirmwarenowait() can fail without calling regdbfwcb() and thus leak memory.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49881.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
007f6c5e6eb45c81ee89368a5f226572ae638831
Fixed
219446396786330937bcd382a7bc4ccd767383bc
Fixed
0ede1a988299e95d54bd89551fd635980572e920
Fixed
e1e12180321f416d83444f2cdc9259e0f5093d35
Fixed
38c9fa2cc6bf4b6e1a74057aef8b5cffd23d3264
Fixed
e9b5a4566d5bc71cc901be50d1fa24da00613120
Fixed
57b962e627ec0ae53d4d16d7bd1033e27e67677a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49881.json"