VulnerabilityModified
CVE-2022-49185
In the Linux kernel, the following vulnerability has been resolved: pinctrl: nomadik: Add missing of_node_put() in nmk_pinctrl_probe This node pointer is returned by of_parse_phandle() with refcount incremented in this function.
MEDIUM 5.5EPSS 0.27%
Does this matter?
Lower severity and a low EPSS score (0.27%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: pinctrl: nomadik: Add missing of_node_put() in nmk_pinctrl_probe This node pointer is returned by of_parse_phandle() with refcount incremented in this function. Calling of_node_put() to avoid the refcount leak.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.27% probability · 19th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/0067ba448f1c29ca06e5aee00d8506889ed1f9d0Patch
- https://git.kernel.org/stable/c/0356d4b64a03d23daf99a2a29d7d7d91d6ec2ea8Patch
- https://git.kernel.org/stable/c/59250d547542f1c7765a78dc97ddfe5e6b0d2ab0Patch
- https://git.kernel.org/stable/c/62580a40c9bef3d8a90629c64dda381344b35ffdPatch
- https://git.kernel.org/stable/c/669b05ff43bd7ed684379c6e2006a6dad5127b71Patch
- https://git.kernel.org/stable/c/9511c6018cd772668def8b034bc67269847e591aPatch
- https://git.kernel.org/stable/c/bc1e29a35147c1ba6ea2b06a16cb0028f7c852d2Patch
- https://git.kernel.org/stable/c/c09ac191b1f97cfa06f394dbfd7a5db07986cefcPatch
- https://git.kernel.org/stable/c/c52703355766c347f270df222a744e0c491a02f2Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.