CVE-2022-48698

MEDIUM

Linux Kernel < 5.15.68 - Use-After-Free in DRM AMD Display DebugFS Lookup

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix memory leak when using debugfs_lookup() When calling debugfs_lookup() the result must have dput() called on it, otherwise the memory will leak over time. Fix this up by properly calling dput().

Scores

CVSS v3 5.3
EPSS 0.0021
EPSS Percentile 11.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-401
Status published
Products (12)
linux/Kernel 5.13.0 - 5.15.68linux
linux/Kernel 5.16.0 - 5.19.9linux
Linux/Linux < 5.13
Linux/Linux 5.13
Linux/Linux 5.15.68 - 5.15.*
Linux/Linux 5.19.9 - 5.19.*
Linux/Linux 6.0
Linux/Linux 86bc221918925a0bbb49043e3936e898e009b43b - 3a6279d243cb035eaaff1450980b40cf19748f05
Linux/Linux 86bc221918925a0bbb49043e3936e898e009b43b - 58acd2ebae034db3bacf38708f508fbd12ae2e54
Linux/Linux 86bc221918925a0bbb49043e3936e898e009b43b - cbfac7fa491651c57926c99edeb7495c6c1aeac2
... and 2 more
Published May 03, 2024
Tracked Since Feb 18, 2026