CVE-2022-49244

Summary

In the Linux kernel, the following vulnerability has been resolved:

ASoC: mediatek: mt8192-mt6359: Fix error handling in mt8192_mt6359_dev_probe

The device_node pointer is returned by of_parse_phandle() with refcount incremented. We should use of_node_put() on it when done.

This function only calls of_node_put() in the regular path. And it will cause refcount leak in error paths. Fix this by calling of_node_put() in error handling too.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux286c6f7b28fab19d649c2e1f3bc18fdecdbadfe5 < 87e04a89c31e792eef62bcba6ebb77fd323d28a1affected
LinuxLinuxd1be8577f0b2f679095d237aaf281dca344f06c4 < d5a38629f1aaf397fd471b27e49d55289ddc0656affected
LinuxLinux4e28491a7a198c668437f2be8a91a76aa52f20eb < 1765787ec02e824f4f5e672cf269280a5da09d2faffected
LinuxLinux4e28491a7a198c668437f2be8a91a76aa52f20eb < e45ac7831ff3e2934d58cce319c17c8ec763c95caffected
LinuxLinux5.15.17 < 5.15.33affected
LinuxLinux5.16.3 < 5.16.19affected
LinuxLinux5.17affected
LinuxLinux0 < 5.17unaffected
LinuxLinux5.15.33 <= 5.15.*unaffected
LinuxLinux5.16.19 <= 5.16.*unaffected
LinuxLinux5.17.2 <= 5.17.*unaffected
LinuxLinux5.18 <= *unaffected

Weaknesses

References