auxdisplay: lcd2s: Fix memory leak in ->remove()
Published Aug 22, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.21%
Description
Once allocated the struct lcd2s_data is never freed. Fix the memory leak by switching to devm_kzalloc().
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 5.11StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<5.11
- Version 5.15.27StatusunaffectedConstraints<=5.15.*
- Version 5.16.13StatusunaffectedConstraints<=5.16.*
- Version 5.17StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
- ≥ 5.11 · < 5.15.27
- ≥ 5.16 · < 5.16.13
- 5.17
- 5.17
- 5.17
- 5.17
- 5.17
- 5.17
No data.
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat Enterprise Linux is not impacted by this CVE, as this vulnerability does not affect the specific versions or configurations of the Linux kernel used in its distributions. This ensures that users of Red Hat Enterprise Linux are not exposed to the potential risks associated with this issue and no further action or mitigation is necessary for systems running this operating system.
References (8)
- https://access.redhat.com/security/cve/CVE-2022-48907 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2307160 Issue Tracking
- https://git.kernel.org/stable/c/3585ed5f9b11a6094dd991d76a1541e5d03b986a Patch
- https://git.kernel.org/stable/c/5d53cd33f4253aa4cf02bf7e670b3c6a99674351 Patch
- https://git.kernel.org/stable/c/898c0a15425a5bcaa8d44bd436eae5afd2483796 Patch
- https://lore.kernel.org/linux-cve-announce/2024082213-CVE-2022-48907-5405@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-48907
- https://www.cve.org/CVERecord?id=CVE-2022-48907
Change history (0)
No recorded changes yet.