CVE-2022-49746: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: dmaengine: imx-sdma: Fix a possible memory leak in sdma_transfer_init If the function sdma_load_context() fails, the sdma_desc will be freed, but the allocated desc->bd is forgot to be freed. We already met the sdma_load_context() failure case and the log as below: [ 450.699064] imx-sdma 30bd0000.dma-controller: Timeout waiting for CH0 ready ... In this case, the desc->bd will not be freed without this change.
Affected products
- Linux Linux Kernel: before 4.19.272 (fixed in 4.19.272); from 4.20, before 5.4.231 (fixed in 5.4.231); from 5.5, before 5.10.167 (fixed in 5.10.167); from 5.11, before 5.15.92 (fixed in 5.15.92); from 5.16, before 6.1.10 (fixed in 6.1.10); version 6.2 only
Published 2025-03-27. Last modified 2026-06-17.