Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50659

11
FAUCET Score

CVE-2022-50659 is a reference count leak vulnerability in the Linux kernel's hwrng geode driver, specifically affecting the handling of PCI devices. The flaw occurs when iterating through PCI devices, where the reference count for a pci_dev is not properly decremented if the loop is exited prematurely, leading to a resource leak. This vulnerability has no assigned CVSS score, and its EPSS and FAUCET Risk Scores are very low, indicating minimal perceived risk. There is no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
2.6.18CNA affecteddefault affected
LinuxLinux
>= ef5d862734b84239e0140319a95fb0bbff5ef394, < 19b7b85773b18457ff85a9ff4f5e2a2d4bf7ed0c, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < 5cc818ad53df650cac8fb41d9066665366af3f03, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < 6b9e43c4098f1310f5b4d52121d007a219fa5d43, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < 82bd423ed977847652b2048b0f8dcf049b1847a9, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < 874f798c2db5ad595e46982d7f727a679dacb048, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < 88f4ea623f59155280d99d1a59a968f838472c4a, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < 9f6ec8dc574efb7f4f3d7ee9cd59ae307e78f445, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < aa96aff394a511cc7bb7df08d1b8504d4d97671e, >= ef5d862734b84239e0140319a95fb0bbff5ef394, < e2f44baf62567c5cfbc274974c7d96dddad53cccCNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.25%
Probability of exploitation in next 30 days
EPSS Percentile
16.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15

Social Chatter

Media Mentions

No media coverage found for this CVE.

Remediation

Vendor Advisories (1)

redhatCVE-2022-50659Low

kernel: hwrng: geode - Fix PCI device refcount leak

Dec 9, 2025

References

git.kernel.org / stable/c/19b7b85773b18457ff85a9ff4f5e2a2d4bf7ed0c
git.kernel.org / stable/c/5cc818ad53df650cac8fb41d9066665366af3f03
git.kernel.org / stable/c/6b9e43c4098f1310f5b4d52121d007a219fa5d43
git.kernel.org / stable/c/82bd423ed977847652b2048b0f8dcf049b1847a9
git.kernel.org / stable/c/874f798c2db5ad595e46982d7f727a679dacb048
git.kernel.org / stable/c/88f4ea623f59155280d99d1a59a968f838472c4a
git.kernel.org / stable/c/9f6ec8dc574efb7f4f3d7ee9cd59ae307e78f445
git.kernel.org / stable/c/aa96aff394a511cc7bb7df08d1b8504d4d97671e
git.kernel.org / stable/c/e2f44baf62567c5cfbc274974c7d96dddad53ccc