CVE-2022-50707

Source
https://cve.org/CVERecord?id=CVE-2022-50707
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50707.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-50707
Downstream
Published
2025-12-24T10:55:21.547Z
Modified
2026-03-10T21:49:40.080106Z
Summary
virtio-crypto: fix memory leak in virtio_crypto_alg_skcipher_close_session()
Details

In the Linux kernel, the following vulnerability has been resolved:

virtio-crypto: fix memory leak in virtiocryptoalgskcipherclose_session()

'vcctrlreq' is alloced in virtiocryptoalgskcipherclosesession(), and should be freed in the invalid ctrlstatus->status error handling case. Otherwise there is a memory leak.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50707.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4ee475e76b5ea8061970a7c867ffa5eedeb39580
Fixed
79026a2d0a1b080257773d22a493f9bcab8c65be
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0756ad15b1fef287d4d8fa11bc36ea77a5c42e4a
Fixed
67fb59ff1384e338679c0eb7a43c83ce8868c9fa
Fixed
0871df190fe6723464efe0f493d476411616f553
Fixed
b1d65f717cd6305a396a8738e022c6f7c65cfbe8

Affected versions

v5.*
v5.19
v5.19-rc1
v5.19-rc2
v5.19-rc3
v5.19-rc4
v5.19-rc5
v5.19-rc6
v5.19-rc7
v5.19-rc8
v6.*
v6.0
v6.0-rc1
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.0.1
v6.0.10
v6.0.11
v6.0.12
v6.0.13
v6.0.14
v6.0.15
v6.0.16
v6.0.17
v6.0.18
v6.0.2
v6.0.3
v6.0.4
v6.0.5
v6.0.6
v6.0.7
v6.0.8
v6.0.9
v6.1
v6.1-rc1
v6.1-rc2
v6.1-rc3
v6.1-rc4
v6.1-rc5
v6.1-rc6
v6.1-rc7
v6.1-rc8
v6.1.1
v6.1.2
v6.1.3
v6.1.4
v6.2-rc1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50707.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.19.0
Fixed
6.0.19
Type
ECOSYSTEM
Events
Introduced
6.1.0
Fixed
6.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50707.json"