CVE-2022-48775: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Fix memory leak in vmbus_add_channel_kobj kobject_init_and_add() takes reference even when it fails. According to the doc of kobject_init_and_add(): If this function returns an error, kobject_put() must be called to properly clean up the memory associated with the object. Fix memory leak by calling kobject_put().

Affected products

  • Linux Linux Kernel: from 4.15, before 4.19.231 (fixed in 4.19.231); from 4.20, before 5.4.181 (fixed in 5.4.181); from 5.5, before 5.10.102 (fixed in 5.10.102); from 5.11, before 5.15.25 (fixed in 5.15.25); from 5.16, before 5.16.11 (fixed in 5.16.11)

Published 2024-07-16. Last modified 2026-06-17.