Memory Leak in CIFS Implementation of Linux Kernel
CVE-2022-50372
5.5MEDIUM
What is CVE-2022-50372?
A memory leak vulnerability in the CIFS (Common Internet File System) implementation of the Linux kernel occurs when the ntlmssp negotiate blob fails during the mounting process. This flaw leads to unreferenced objects remaining allocated in memory, which can degrade system performance over time. Proper handling of session setup requests is essential to prevent memory leaks in such scenarios.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Linux 49bd49f983b5026e4557d31c5d737d9657c4113e
Linux 49bd49f983b5026e4557d31c5d737d9657c4113e < 30b2d7f8f13664655480d6af45f60270b3eb6736
Linux 5.16
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved