CVE-2022-49457
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
ARM: versatile: Add missing of_node_put in dcscb_init
The device_node pointer is returned by of_find_compatible_node with refcount incremented. We should use of_node_put() to avoid the refcount leak.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < 2d7b23db35254b7d46e852967090c64cdccf24da | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < bbdfb7d4f036118d36415a2575efa6f5246505ae | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < a0fc05cd17617e63fc13ad0c01f3f0afd890d8ec | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < fcd1999ba97445a12cc394f5f42ffd9116bf0185 | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < d146e2a9864ade19914494de3fb520390b415d58 | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < 83c329b980bddbc8c6a3d287d91f2103a4d4a860 | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < 3c6006faed9aba5144b33176d061031a9be66954 | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < d6de7b181c29cd4578ec139aafb5eac062abbe1b | affected |
| Linux | Linux | 1e904e1bf6f1285cc2dd5696c44b7cf78cda643f < 23b44f9c649bbef10b45fa33080cd8b4166800ae | affected |
| Linux | Linux | 3.11 | affected |
| Linux | Linux | 0 < 3.11 | unaffected |
| Linux | Linux | 4.9.318 <= 4.9.* | unaffected |
| Linux | Linux | 4.14.283 <= 4.14.* | unaffected |
| Linux | Linux | 4.19.247 <= 4.19.* | unaffected |
| Linux | Linux | 5.4.198 <= 5.4.* | unaffected |
| Linux | Linux | 5.10.121 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.46 <= 5.15.* | unaffected |
| Linux | Linux | 5.17.14 <= 5.17.* | unaffected |
| Linux | Linux | 5.18.3 <= 5.18.* | unaffected |
| Linux | Linux | 5.19 <= * | unaffected |
Weaknesses
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://git.kernel.org/stable/c/2d7b23db35254b7d46e852967090c64cdccf24da
- https://git.kernel.org/stable/c/bbdfb7d4f036118d36415a2575efa6f5246505ae
- https://git.kernel.org/stable/c/a0fc05cd17617e63fc13ad0c01f3f0afd890d8ec
- https://git.kernel.org/stable/c/fcd1999ba97445a12cc394f5f42ffd9116bf0185
- https://git.kernel.org/stable/c/d146e2a9864ade19914494de3fb520390b415d58
- https://git.kernel.org/stable/c/83c329b980bddbc8c6a3d287d91f2103a4d4a860
- https://git.kernel.org/stable/c/3c6006faed9aba5144b33176d061031a9be66954
- https://git.kernel.org/stable/c/d6de7b181c29cd4578ec139aafb5eac062abbe1b
- https://git.kernel.org/stable/c/23b44f9c649bbef10b45fa33080cd8b4166800ae
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.