In the Linux kernel, the following vulnerability has been resolved:
MIPS: pgalloc: fix memory leak caused by pgd_free()
pgd page is freed by generic implementation pgd_free() since commit
f9cb654cb550 ("asm-generic: pgalloc: provide generic pgd_free()"),
however, there are scenarios that the system uses more than one page as
the pgd table, in such cases the generic implementation pgd_free() won't
be applicable anymore. For example, when PAGE_SIZE_4KB is enabled and
MIPS_VA_BITS_48 is not enabled in a 64bit system, the macro "PGD_ORDER"
will be set as "1", which will cause allocating two pages as the pgd
table. Well, at the same time, the generic implementation pgd_free()
just free one pgd page, which will result in the memory leak.
The memory leak can be easily detected by executing shell command:
"while true; do ls > /dev/null; grep MemFree /proc/meminfo; done"
References
Configurations
Configuration 1 (hide)
|
History
18 Mar 2025, 20:10
Type | Values Removed | Values Added |
---|---|---|
First Time |
Linux linux Kernel
Linux |
|
Summary |
|
|
CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CWE | CWE-401 | |
References | () https://git.kernel.org/stable/c/1bf0d78c8cc3cf615a6e7bf33ada70b73592f0a1 - Patch | |
References | () https://git.kernel.org/stable/c/2bc5bab9a763d520937e4f3fe8df51c6a1eceb97 - Patch | |
References | () https://git.kernel.org/stable/c/5a8501d34b261906e4c76ec9da679f2cb4d309ed - Patch | |
References | () https://git.kernel.org/stable/c/d29cda15cab086d82d692de016f7249545d4b6b4 - Patch | |
References | () https://git.kernel.org/stable/c/fa3d44424579972cc7c4fac3d9cf227798ebdfa0 - Patch |
26 Feb 2025, 07:00
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-26 07:00
Updated : 2025-03-18 20:10
NVD link : CVE-2022-49210
Mitre link : CVE-2022-49210
CVE.ORG link : CVE-2022-49210
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-401
Missing Release of Memory after Effective Lifetime