{"id":"DEBIAN-CVE-2022-50626","details":"In the Linux kernel, the following vulnerability has been resolved:  media: dvb-usb: fix memory leak in dvb_usb_adapter_init()  Syzbot reports a memory leak in \"dvb_usb_adapter_init()\". The leak is due to not accounting for and freeing current iteration's adapter-\u003epriv in case of an error. Currently if an error occurs, it will exit before incrementing \"num_adapters_initalized\", which is used as a reference counter to free all adap-\u003epriv in \"dvb_usb_adapter_exit()\". There are multiple error paths that can exit from before incrementing the counter. Including the error handling paths for \"dvb_usb_adapter_stream_init()\", \"dvb_usb_adapter_dvb_init()\" and \"dvb_usb_adapter_frontend_init()\" within \"dvb_usb_adapter_init()\".  This means that in case of an error in any of these functions the current iteration is not accounted for and the current iteration's adap-\u003epriv is not freed.  Fix this by freeing the current iteration's adap-\u003epriv in the \"stream_init_err:\" label in the error path. The rest of the (accounted for) adap-\u003epriv objects are freed in dvb_usb_adapter_exit() as expected using the num_adapters_initalized variable.  Syzbot report:  BUG: memory leak unreferenced object 0xffff8881172f1a00 (size 512):   comm \"kworker/0:2\", pid 139, jiffies 4294994873 (age 10.960s)   hex dump (first 32 bytes):     00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................     00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00  ................ backtrace:     [\u003cffffffff844af012\u003e] dvb_usb_adapter_init drivers/media/usb/dvb-usb/dvb-usb-init.c:75 [inline]     [\u003cffffffff844af012\u003e] dvb_usb_init drivers/media/usb/dvb-usb/dvb-usb-init.c:184 [inline]     [\u003cffffffff844af012\u003e] dvb_usb_device_init.cold+0x4e5/0x79e drivers/media/usb/dvb-usb/dvb-usb-init.c:308     [\u003cffffffff830db21d\u003e] dib0700_probe+0x8d/0x1b0 drivers/media/usb/dvb-usb/dib0700_core.c:883     [\u003cffffffff82d3fdc7\u003e] usb_probe_interface+0x177/0x370 drivers/usb/core/driver.c:396     [\u003cffffffff8274ab37\u003e] call_driver_probe drivers/base/dd.c:542 [inline]     [\u003cffffffff8274ab37\u003e] really_probe.part.0+0xe7/0x310 drivers/base/dd.c:621     [\u003cffffffff8274ae6c\u003e] really_probe drivers/base/dd.c:583 [inline]     [\u003cffffffff8274ae6c\u003e] __driver_probe_device+0x10c/0x1e0 drivers/base/dd.c:752     [\u003cffffffff8274af6a\u003e] driver_probe_device+0x2a/0x120 drivers/base/dd.c:782     [\u003cffffffff8274b786\u003e] __device_attach_driver+0xf6/0x140 drivers/base/dd.c:899     [\u003cffffffff82747c87\u003e] bus_for_each_drv+0xb7/0x100 drivers/base/bus.c:427     [\u003cffffffff8274b352\u003e] __device_attach+0x122/0x260 drivers/base/dd.c:970     [\u003cffffffff827498f6\u003e] bus_probe_device+0xc6/0xe0 drivers/base/bus.c:487     [\u003cffffffff82745cdb\u003e] device_add+0x5fb/0xdf0 drivers/base/core.c:3405     [\u003cffffffff82d3d202\u003e] usb_set_configuration+0x8f2/0xb80 drivers/usb/core/message.c:2170     [\u003cffffffff82d4dbfc\u003e] usb_generic_driver_probe+0x8c/0xc0 drivers/usb/core/generic.c:238     [\u003cffffffff82d3f49c\u003e] usb_probe_device+0x5c/0x140 drivers/usb/core/driver.c:293     [\u003cffffffff8274ab37\u003e] call_driver_probe drivers/base/dd.c:542 [inline]     [\u003cffffffff8274ab37\u003e] really_probe.part.0+0xe7/0x310 drivers/base/dd.c:621     [\u003cffffffff8274ae6c\u003e] really_probe drivers/base/dd.c:583 [inline]     [\u003cffffffff8274ae6c\u003e] __driver_probe_device+0x10c/0x1e0 drivers/base/dd.c:752","modified":"2026-09-01T16:05:35.847623014Z","published":"2025-12-08T02:15:48.653Z","upstream":["CVE-2022-50626"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2022-50626"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-50626.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-50626.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-50626.json"}}],"schema_version":"1.9.0"}