Security Advisory

CVE-2022-50077

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-06-18 11:02:20
Last updated 2026-05-11 19:12:25
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix reference count leak in aa_pivotroot() The aa_pivotroot() function has a reference counting bug in a specific path. When aa_replace_current_label() returns on success, the function forgets to decrement the reference count of “target”, which is increased earlier by build_pivotroot(), causing a reference leak. Fix it by decreasing the refcount of “target” in that path.