SB2025122651 - Memory leak in Linux kernel clk st driver
Published: December 26, 2025 Updated: December 31, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Memory leak (CVE-ID: CVE-2022-50776)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within the st_of_quadfs_setup() function in drivers/clk/st/clkgen-fsyn.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/081538ae5817631a2b99e8e75cce981060aab29f
- https://git.kernel.org/stable/c/335ef7546c77e63154d6ea4d603b11274a85900e
- https://git.kernel.org/stable/c/713ad301c2d49e88fe586b57ebac8f220a98e162
- https://git.kernel.org/stable/c/adf6a00859d014cecf046dc91f75c0e65a544360
- https://git.kernel.org/stable/c/be03875007621fcee96e6f9fd7b9e59c8dfcf6fa
- https://git.kernel.org/stable/c/cfd3ffb36f0d566846163118651d868e607300ba
- https://git.kernel.org/stable/c/efd025f32fce27a8ada9bcb4731e8a84476e5b3d
- https://git.kernel.org/stable/c/f0295209de457049a4a5f3e3985528391bd1ab34
- https://git.kernel.org/stable/c/f4731395d6db850127634197863aede188d8e9de
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.2