SB2025121028 - Memory leak in Linux kernel media dvb-frontends driver
Published: December 10, 2025 Updated: December 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2022-50664)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the bcm3510_download_firmware() function in drivers/media/dvb-frontends/bcm3510.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/25cab05aa2df904ee1fea37d8dfa0d92c951bb4e
- https://git.kernel.org/stable/c/438a4a8dece2abac099777a00db91784c0996cdc
- https://git.kernel.org/stable/c/438cd29fec3ea09769639f6032687e0c1434dbe0
- https://git.kernel.org/stable/c/669fb90507dbaf419aa3871bf73160e93d50487f
- https://git.kernel.org/stable/c/a15fe8d9f1bf460a804bcf18a890bfd2cf0d5caa
- https://git.kernel.org/stable/c/a44828482bd5b11d728d7dac09b0d723aab9ff7b
- https://git.kernel.org/stable/c/afccb6ac63fc4328bc61ba086a3cad30054d87c1
- https://git.kernel.org/stable/c/b42580c8d8aac11a66046897979cc13cfd04c541
- https://git.kernel.org/stable/c/b4d8fd008de1774d99a5b50acc03d92a1919c3a7
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.270