CVE-2022-48955: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: net: thunderbolt: fix memory leak in tbnet_open() When tb_ring_alloc_rx() failed in tbnet_open(), ida that allocated in tb_xdomain_alloc_out_hopid() is not released. Add tb_xdomain_release_out_hopid() to the error path to release ida.

Affected products

  • Linux Linux Kernel: from 5.13, before 5.15.83 (fixed in 5.15.83); from 5.16, before 6.0.13 (fixed in 6.0.13); version 6.1 only

Published 2024-10-21. Last modified 2026-06-17.