CVE-2022-50520

Source
https://cve.org/CVERecord?id=CVE-2022-50520
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50520.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-50520
Downstream
Related
Published
2025-10-07T15:19:14.528Z
Modified
2026-04-11T12:44:57.509741Z
Summary
drm/radeon: Fix PCI device refcount leak in radeon_atrm_get_bios()
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/radeon: Fix PCI device refcount leak in radeonatrmget_bios()

As comment of pcigetclass() says, it returns a pci_device with its refcount increased and decreased the refcount for the input parameter @from if it is not NULL.

If we break the loop in radeonatrmgetbios() with 'pdev' not NULL, we need to call pcidevput() to decrease the refcount. Add the missing pcidev_put() to avoid refcount leak.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50520.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c61e2775873f603148e8e998a938721b7d222d24
Fixed
6f28c7f67af4ef9bca580ab67ae2d4511797af56
Fixed
e738f82e5b1311e8fb3d1409491a6fcce6418fbe
Fixed
1079df6acf56f99d86b0081a38c84701412cc90e
Fixed
470a77989037c3ab2b08bf2d026d2c0ddc35ff5b
Fixed
3991d98a8a07b71c02f3a39f77d6d9a7f575a5c4
Fixed
88c6e0995c04b170563b5c894c50a3b2152e18c2
Fixed
b9decada8749b606fd8b4f04a3d6c74f7983d7bc
Fixed
a6cffe54064a5f6c2162a85af3c16c6b453eac4e
Fixed
725a521a18734f65de05b8d353b5bd0d3ca4c37a
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
61ebf0a926149cc161131470cf848cb70b3d6fe6
Last affected
0a1d9a860832a5ca43114cdebf0e8650463cc1f0
Last affected
5f54f145719f453dccc73304cd427096bf7b806c
Last affected
063ab9cb6308a0806d623c8d6dda5cb2b3b87fce

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50520.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.6.0
Fixed
4.9.337
Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
4.14.303
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.270
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.229
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.163
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.86
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.0.16
Type
ECOSYSTEM
Events
Introduced
6.1.0
Fixed
6.1.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50520.json"