CVE-2022-50027: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Fix possible memory leak when failing to issue CMF WQE There is no corresponding free routine if lpfc_sli4_issue_wqe fails to issue the CMF WQE in lpfc_issue_cmf_sync_wqe. If ret_val is non-zero, then free the iocbq request structure.

Affected products

  • Linux Linux Kernel: from 5.15, before 5.15.63 (fixed in 5.15.63); from 5.16, before 5.19.4 (fixed in 5.19.4)

Published 2025-06-18. Last modified 2026-06-17.