sdio_init_func of the component mmc. Such manipulation leads to improper update of reference count.This vulnerability is traded as CVE-2022-50640. Access to the local network is required for this attack to succeed. There is no exploit available.
The affected component should be upgraded.