CVE-2022-49191

Source
https://cve.org/CVERecord?id=CVE-2022-49191
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49191.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-49191
Downstream
Related
Published
2025-02-26T01:55:38.124Z
Modified
2026-07-15T01:49:16.337124028Z
Summary
mxser: fix xmit_buf leak in activate when LSR == 0xff
Details

In the Linux kernel, the following vulnerability has been resolved:

mxser: fix xmit_buf leak in activate when LSR == 0xff

When LSR is 0xff in ->activate() (rather unlike), we return an error. Provided ->shutdown() is not called when ->activate() fails, nothing actually frees the buffer in this case.

Fix this by properly freeing the buffer in a designated label. We jump there also from the "!info->type" if now too.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49191.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6769140d304731f0a3b177470a2adb4bacd9036b
Fixed
376922045009f8ea2d20a8fa3475e95b47c41690
Fixed
125b7c929fc9b1e5eaa344bceb6367dfa6fd3f9d
Fixed
685b6d16bf89595310b5d61394c9b97cc9505c7c
Fixed
996291d06851a26678a0fab488b6e1f0677c0576
Fixed
2cd05c38a27bee7fb42aa4d43174d68ac55dac0f
Fixed
b125b08dbee3611f03f53b71471813ed4ccafcdd
Fixed
6c9041b2f90c0eace73106f22350e1d2c98f5edc
Fixed
6dffc2035fbaada60ca8db59e0962e34f760370a
Fixed
cd3a4907ee334b40d7aa880c7ab310b154fd5cd4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49191.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.33
Fixed
4.9.311
Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
4.14.276
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.238
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.189
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.110
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.33
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.16.19
Type
ECOSYSTEM
Events
Introduced
5.17.0
Fixed
5.17.2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49191.json"