CVE-2022-50458
In the Linux kernel, the following vulnerability has been resolved: clk: tegra: Fix refcount leak in tegra210_clock_init of_find_matching_node() returns a node pointer with refcount incremented, we should use of_node_put() on it when not need anymore.
Does this matter?
Lower severity and a low EPSS score (0.16%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: clk: tegra: Fix refcount leak in tegra210_clock_init of_find_matching_node() returns a node pointer with refcount incremented, we should use of_node_put() on it when not need anymore. Add missing of_node_put() to avoid refcount leak.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.16% probability · 5th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/1a6d97139b0a370a9d0809a00e91c41f5bcd3ef1Patch
- https://git.kernel.org/stable/c/417ed4432b1b40526b1cb50e535d46900505f6d9Patch
- https://git.kernel.org/stable/c/56c78cb1f00a9dde8cd762131ce8f4c5eb046fbbPatch
- https://git.kernel.org/stable/c/6d3ac23b952f374017e1a5249d1f03bdbc7f9878Patch
- https://git.kernel.org/stable/c/a19360db83d29bd6b0de4ffad2c815d79246ba99Patch
- https://git.kernel.org/stable/c/ac010ec3484ba95c6ab3d946f9a83560005c13c6Patch
- https://git.kernel.org/stable/c/e715510adc20a4a07f157ece4e6d068e648a0383Patch
- https://git.kernel.org/stable/c/f38f34ba1e1029b927b81b9bf9d952f4ed4007bdPatch
- https://git.kernel.org/stable/c/f487137a53b1a0692211f7ae82c0a7f87c30bdbePatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.