In the Linux kernel, the following vulnerability has been resolved:
lib/string_helpers: fix not adding strarray to device's resource list
Add allocated strarray to device's resource list. This is a must to
automatically release strarray when the device disappears.
Without this fix we have a memory leak in the few drivers which use
devm_kasprintf_strarray().
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 02 Oct 2025 21:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Thu, 17 Apr 2025 20:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Linux Linux linux Kernel | |
| Weaknesses | CWE-401 | |
| CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| Vendors & Products | Linux Linux linux Kernel | 
Fri, 28 Feb 2025 14:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | |
| Metrics | threat_severity 
 | cvssV3_1 
 
 | 
Wed, 26 Feb 2025 02:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | In the Linux kernel, the following vulnerability has been resolved: lib/string_helpers: fix not adding strarray to device's resource list Add allocated strarray to device's resource list. This is a must to automatically release strarray when the device disappears. Without this fix we have a memory leak in the few drivers which use devm_kasprintf_strarray(). | |
| Title | lib/string_helpers: fix not adding strarray to device's resource list | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Linux
Published: 2025-02-26T02:12:29.556Z
Updated: 2025-10-01T19:46:50.601Z
Reserved: 2025-02-26T02:08:31.565Z
Link: CVE-2022-49403
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-10-01T16:46:32.662Z
 NVD
                        NVD
                    Status : Modified
Published: 2025-02-26T07:01:16.847
Modified: 2025-10-01T20:16:17.410
Link: CVE-2022-49403
 Redhat
                        Redhat
                     ReportizFlow
ReportizFlow