CVE-2022-50624: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: net: netsec: fix error handling in netsec_register_mdio() If phy_device_register() fails, phy_device_free() need be called to put refcount, so memory of phy device and device name can be freed in callback function. If get_phy_device() fails, mdiobus_unregister() need be called, or it will cause warning in mdiobus_free() and kobject is leaked.
Affected products
- Linux Linux: from 4.16, before 4.19.264 (fixed in 4.19.264); from 4.20, before 5.4.223 (fixed in 5.4.223); from 5.5, before 5.10.153 (fixed in 5.10.153); from 5.11, before 5.15.77 (fixed in 5.15.77); from 5.16, before 6.0.7 (fixed in 6.0.7)
Published 2025-12-08. Last modified 2026-06-17.