๐Ÿ” CVE Alert

CVE-2022-49534

MEDIUM 5.5

scsi: lpfc: Protect memory leak for NPIV ports sending PLOGI_RJT

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Protect memory leak for NPIV ports sending PLOGI_RJT There is a potential memory leak in lpfc_ignore_els_cmpl() and lpfc_els_rsp_reject() that was allocated from NPIV PLOGI_RJT (lpfc_rcv_plogi()'s login_mbox). Check if cmdiocb->context_un.mbox was allocated in lpfc_ignore_els_cmpl(), and then free it back to phba->mbox_mem_pool along with mbox->ctx_buf for service parameters. For lpfc_els_rsp_reject() failure, free both the ctx_buf for service parameters and the login_mbox.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Feb 26, 2025
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new medium vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
858c9f6c19c6f9bf86cbbc64ce0d17c61d6131b8 < c00df0f34a6d5e14da379f96ea67e501ce67b002 858c9f6c19c6f9bf86cbbc64ce0d17c61d6131b8 < 672d1cb40551ea9c95efad43ab6d45e4ab4e015f
Linux / Linux
2.6.23

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/c00df0f34a6d5e14da379f96ea67e501ce67b002 git.kernel.org: https://git.kernel.org/stable/c/672d1cb40551ea9c95efad43ab6d45e4ab4e015f