CVE-2022-48778

HIGH

Linux Kernel 5.4.174-5.4.180, 5.10.94-5.10.101, 5.15.17-5.15.24, 5.16.3-5.16.10 DoS via PM Runtime Reference Leak

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: gpmi: don't leak PM reference in error path If gpmi_nfc_apply_timings() fails, the PM runtime usage counter must be dropped.

Scores

CVSS v3 7.8
EPSS 0.0023
EPSS Percentile 14.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (14)
linux/Kernel 5.10.94 - 5.10.102linux
linux/Kernel 5.15.17 - 5.15.25linux
linux/Kernel 5.16.3 - 5.16.11linux
linux/Kernel 5.4.174 - 5.4.181linux
Linux/Linux 0fe08bf9909f02eb487af2cc829f2853ea69bc96 - 4a7ec50298b1127c5024a750c969ea0794899545
Linux/Linux 29218853877a748a2ca41d9957a84b2d6a7f56a7 - 4cd3281a910a5adf73b2a0a82241dd67844d0b25
Linux/Linux 5.10.94 - 5.10.102
Linux/Linux 5.15.17 - 5.15.25
Linux/Linux 5.16.3 - 5.16.11
Linux/Linux 5.4.174 - 5.4.181
... and 4 more
Published Jul 16, 2024
Tracked Since Feb 18, 2026