
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2022-50548 is a memory leak vulnerability in the Linux kernel affecting the media subsystem, specifically in the hi846_parse_dt() function of the hi846 i2c driver. The vulnerability was discovered when checks related to supported link frequencies fail, causing V4L2 fwnode resources to not be properly released before returning (Ubuntu Security).
The vulnerability occurs in the hi846_parse_dt() function where if any checks related to the supported link frequencies fail, the V4L2 fwnode resources don't get released before returning, leading to a memory leak. The issue was fixed by properly freeing the V4L2 fwnode data in a designated label (Ubuntu Security).
The vulnerability results in a memory leak condition in the Linux kernel's media subsystem. While memory leaks can potentially lead to resource exhaustion over time, this particular issue has been rated as Medium severity (Ubuntu Security).
The vulnerability has been fixed in the Linux kernel by adding proper cleanup of V4L2 fwnode resources in the error path. Users should update to a patched kernel version that includes this fix (Ubuntu Security).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."