In the Linux kernel, the following vulnerability has been resolved:
staging: vt6655: fix some erroneous memory clean-up loops
In some initialization functions of this driver, memory is allocated with 'i' acting as an index variable and increasing from 0. The commit in "Fixes" introduces some clean-up codes in case of allocation failure, which free memory in reverse order with 'i' decreasing to 0. However, there are some problems: - The case i=0 is left out. Thus memory is leaked. - In case memory allocation fails right from the start, the memory freeing loops will start with i=-1 and invalid memory locations will be accessed.
One of these loops has been fixed in commit c8ff91535880 ("staging: vt6655: fix potential memory leak"). Fix the remaining erroneous loops.
[
{
"id": "CVE-2022-50355-0b2bebca",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2a2db520e3ca5aafba7c211abfd397666c9b5f9d",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-289ae0dc",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@95ac62e8545be2b0a8cae0beef7c682e2e470e48",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-43b3e49b",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2a2db520e3ca5aafba7c211abfd397666c9b5f9d",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-493ccbf8",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@88b9cc60f26e8a05d1ddbddf91b09ca2915f20e0",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-51516095",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@88b9cc60f26e8a05d1ddbddf91b09ca2915f20e0",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-56b28494",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@88b9cc60f26e8a05d1ddbddf91b09ca2915f20e0",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-5eecb3f9",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a9e9806d1c315bc50dce05479a079b9a104474b8",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-66bef560",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@637672a71f5016a40b0a6c0f3c8ad25eacedc8c3",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-7762e7f5",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed11b73c963292e7b49c0f37025c58ed3b7921d6",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-79e09ecf",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f19e5b7df54590c831f350381963f25585c8f7d5",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-8622ae21",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f19e5b7df54590c831f350381963f25585c8f7d5",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-8b36ed3a",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2a2db520e3ca5aafba7c211abfd397666c9b5f9d",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-8e80ed8e",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@95ac62e8545be2b0a8cae0beef7c682e2e470e48",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-9a5f68fb",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@637672a71f5016a40b0a6c0f3c8ad25eacedc8c3",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-9a76f8de",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@95ac62e8545be2b0a8cae0beef7c682e2e470e48",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-a43bb676",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@88b9cc60f26e8a05d1ddbddf91b09ca2915f20e0",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-abdee309",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a9e9806d1c315bc50dce05479a079b9a104474b8",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-b62d4f0e",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@637672a71f5016a40b0a6c0f3c8ad25eacedc8c3",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-b6b6e1f7",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed11b73c963292e7b49c0f37025c58ed3b7921d6",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-b77a887e",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a9e9806d1c315bc50dce05479a079b9a104474b8",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-b936c222",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed11b73c963292e7b49c0f37025c58ed3b7921d6",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-c435e6b6",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "58996161230176129590904890000748818830"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@637672a71f5016a40b0a6c0f3c8ad25eacedc8c3",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-e01be679",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2a2db520e3ca5aafba7c211abfd397666c9b5f9d",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-e91b7b35",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ed11b73c963292e7b49c0f37025c58ed3b7921d6",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-ea22ae36",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a9e9806d1c315bc50dce05479a079b9a104474b8",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-fc381bc9",
"deprecated": false,
"digest": {
"length": 1005.0,
"function_hash": "39768139033618973348279781583948972189"
},
"signature_version": "v1",
"target": {
"function": "device_init_rd0_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f19e5b7df54590c831f350381963f25585c8f7d5",
"signature_type": "Function"
},
{
"id": "CVE-2022-50355-ff88255a",
"deprecated": false,
"digest": {
"line_hashes": [
"132689820432361637181417792894205585181",
"326054780242645489312367248690791288065",
"136222309434609320089591211429547467332",
"165338936435443055974680305607061428005",
"132689820432361637181417792894205585181",
"101167796554235459541917214507553780337",
"163547328248296155171859457120141701323",
"258779038213211721595927229324806143448",
"240418254749191304106748468536017357402",
"248893419412448722802161941254127318000",
"3086957920837047274057888811973112802",
"323069642134287746963518964360429917339"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f19e5b7df54590c831f350381963f25585c8f7d5",
"signature_type": "Line"
},
{
"id": "CVE-2022-50355-ffe4aa02",
"deprecated": false,
"digest": {
"length": 985.0,
"function_hash": "28920173426269447144772812143497557858"
},
"signature_version": "v1",
"target": {
"function": "device_init_td1_ring",
"file": "drivers/staging/vt6655/device_main.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@95ac62e8545be2b0a8cae0beef7c682e2e470e48",
"signature_type": "Function"
}
]