CVE-2022-50572

Source
https://cve.org/CVERecord?id=CVE-2022-50572
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50572.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-50572
Downstream
Related
Published
2025-10-22T13:23:27.813Z
Modified
2026-03-12T03:26:38.884725Z
Summary
ASoC: audio-graph-card: fix refcount leak of cpu_ep in __graph_for_each_link()
Details

In the Linux kernel, the following vulnerability has been resolved:

ASoC: audio-graph-card: fix refcount leak of cpu_ep in _graphforeachlink()

The ofgetnextchild() returns a node with refcount incremented, and decrements the refcount of prev. So in the error path of the while loop, ofnodeput() needs be called for cpuep.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50572.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
fce9b90c1ab7e915553c57353355700c79b39c86
Fixed
ed1376f771404917c2ec3ebc617431ec01146134
Fixed
06c9d468c06806dab752eb8e72addbf3792c1023
Fixed
85eb5c952b7fe2d2059beaa4a4dd26688b25547b
Fixed
49dad92af6892f46851af989ef3aa7cd7316c389
Fixed
4cc8431ec77a43ea106d8bde0860c61cfdda1cd0
Fixed
8ab2d12c726f0fde0692fa5d81d8019b3dcd62d0

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50572.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.1.0
Fixed
5.4.229
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.163
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.86
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.0.16
Type
ECOSYSTEM
Events
Introduced
6.1.0
Fixed
6.1.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50572.json"