CVE-2022-49351
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
net: altera: Fix refcount leak in altera_tse_mdio_create
Every iteration of for_each_child_of_node() decrements the reference count of the previous node. When break from a for_each_child_of_node() loop, we need to explicitly call of_node_put() on the child node when not need anymore. Add missing of_node_put() to avoid refcount leak.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < a013fa884d8738ad8455aa1a843b8c9d80c6c833 | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 1fd12298a0e0ca23478c715e672ee64c85670584 | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 5cd0e22fa11f4a21a8c09cc258f20b1474c95801 | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 8174acbef87b8dd8bf3731eba2a5af1ac857e239 | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 96bf5ed057df2d157274d4e2079002f9a9404bb8 | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < e31d9ba169860687dba19bdc8fccbfd34077f655 | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 803b217f1fb49a2dbb2123acdb45111b9c48b8be | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 4f850fe0a32c3f1e19b76996a3b1ca32637a14de | affected |
| Linux | Linux | bbd2190ce96d8fce031f0526c1f970b68adc9d1a < 11ec18b1d8d92b9df307d31950dcba0b3dd7283c | affected |
| Linux | Linux | 3.15 | affected |
| Linux | Linux | 0 < 3.15 | unaffected |
| Linux | Linux | 4.9.318 <= 4.9.* | unaffected |
| Linux | Linux | 4.14.283 <= 4.14.* | unaffected |
| Linux | Linux | 4.19.247 <= 4.19.* | unaffected |
| Linux | Linux | 5.4.198 <= 5.4.* | unaffected |
| Linux | Linux | 5.10.122 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.47 <= 5.15.* | unaffected |
| Linux | Linux | 5.17.15 <= 5.17.* | unaffected |
| Linux | Linux | 5.18.4 <= 5.18.* | unaffected |
| Linux | Linux | 5.19 <= * | unaffected |
Weaknesses
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://git.kernel.org/stable/c/a013fa884d8738ad8455aa1a843b8c9d80c6c833
- https://git.kernel.org/stable/c/1fd12298a0e0ca23478c715e672ee64c85670584
- https://git.kernel.org/stable/c/5cd0e22fa11f4a21a8c09cc258f20b1474c95801
- https://git.kernel.org/stable/c/8174acbef87b8dd8bf3731eba2a5af1ac857e239
- https://git.kernel.org/stable/c/96bf5ed057df2d157274d4e2079002f9a9404bb8
- https://git.kernel.org/stable/c/e31d9ba169860687dba19bdc8fccbfd34077f655
- https://git.kernel.org/stable/c/803b217f1fb49a2dbb2123acdb45111b9c48b8be
- https://git.kernel.org/stable/c/4f850fe0a32c3f1e19b76996a3b1ca32637a14de
- https://git.kernel.org/stable/c/11ec18b1d8d92b9df307d31950dcba0b3dd7283c
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.