CVE-2022-49188

MEDIUM EPSS 15.8%
Published Feb 26, 20251y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Feb 26, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom_q6v5_mss: Fix some leaks in q6v5_alloc_memory_region The device_node pointer is returned by of_parse_phandle() or of_get_child_by_name() with refcount incremented. We should use of_node_put() on it when done. This function only call of_node_put(node) when of_address_to_resource succeeds, missing error cases.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
15.8% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-401

Affected Products 4

VendorProductVersionRange
linuxlinux_kernel*≥4.8  –  <5.10.110
linuxlinux_kernel*≥5.11  –  <5.15.33
linuxlinux_kernel*≥5.16  –  <5.16.19
linuxlinux_kernel*≥5.17  –  <5.17.2

References 5

  • git.kernel.org https://git.kernel.org/stable/c/07a5dcc4bed9d7cae54adf5aa10ff9f037a3204b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a7d988735e757e111f9722de7cf1b40a84a48b1f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b9df3007b3cda4936cc50f5a7d2d30505a652828
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/bd4771ba2cf9e18473a42b5b70175e50d67a64bb
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f7210ca29a783c94478da02368731e4c9cf7cdb7
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/07a5dcc4bed9d7cae54adf5aa10ff9f037a3204b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a7d988735e757e111f9722de7cf1b40a84a48b1f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b9df3007b3cda4936cc50f5a7d2d30505a652828
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/bd4771ba2cf9e18473a42b5b70175e50d67a64bb
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f7210ca29a783c94478da02368731e4c9cf7cdb7
    Patch