Executive Summary

Informations
Name CVE-2022-49534 First vendor Publication 2025-02-26
Vendor Cve Last vendor Modification 2025-03-10

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Overall CVSS Score 5.5
Base Score 5.5 Environmental Score 5.5
impact SubScore 3.6 Temporal Score 5.5
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

scsi: lpfc: Protect memory leak for NPIV ports sending PLOGI_RJT

There is a potential memory leak in lpfc_ignore_els_cmpl() and lpfc_els_rsp_reject() that was allocated from NPIV PLOGI_RJT (lpfc_rcv_plogi()'s login_mbox).

Check if cmdiocb->context_un.mbox was allocated in lpfc_ignore_els_cmpl(), and then free it back to phba->mbox_mem_pool along with mbox->ctx_buf for service parameters.

For lpfc_els_rsp_reject() failure, free both the ctx_buf for service parameters and the login_mbox.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-49534

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-401 Failure to Release Memory Before Removing Last Reference ('Memory Leak')

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3538

Sources (Detail)

https://git.kernel.org/stable/c/672d1cb40551ea9c95efad43ab6d45e4ab4e015f
https://git.kernel.org/stable/c/c00df0f34a6d5e14da379f96ea67e501ce67b002
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
Date Informations
2025-06-26 02:09:54
  • Multiple Updates
2025-06-25 12:22:44
  • Multiple Updates
2025-06-24 02:14:29
  • Multiple Updates
2025-05-27 02:11:16
  • Multiple Updates
2025-03-29 03:14:48
  • Multiple Updates
2025-03-28 13:35:08
  • Multiple Updates
2025-03-28 02:57:13
  • Multiple Updates
2025-03-19 00:20:57
  • Multiple Updates
2025-03-18 00:21:00
  • Multiple Updates
2025-03-14 00:21:28
  • Multiple Updates
2025-03-13 21:21:21
  • Multiple Updates
2025-03-11 00:21:34
  • Multiple Updates
2025-02-26 17:20:30
  • First insertion