CVE-2022-49591
MEDIUMLinux Kernel 5.9-5.15.58, 5.16.0-5.18.15 - Refcount Leak in ksz_switch_register
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: net: dsa: microchip: ksz_common: Fix refcount leak bug In ksz_switch_register(), we should call of_node_put() for the reference returned by of_get_child_by_name() which has increased the refcount.
References (3)
Core 3
Core References
Mailing List, Patch
https://git.kernel.org/stable/c/88ec2ff42da3ac93b2437dc52fe25cd4372148e6
Mailing List, Patch
https://git.kernel.org/stable/c/4165e02716518bbbe9c9104b39530d40928bc7ce
Mailing List, Patch
https://git.kernel.org/stable/c/a14bd7475452c51835dd5a0cee4c8fa48dd0b539
Scores
CVSS v3
5.5
EPSS
0.0025
EPSS Percentile
16.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
Status
published
Products (12)
linux/Kernel
5.16.0 - 5.18.15linux
linux/Kernel
5.9.0 - 5.15.58linux
Linux/Linux
< 5.9
Linux/Linux
5.15.58 - 5.15.*
Linux/Linux
5.18.15 - 5.18.*
Linux/Linux
5.19
Linux/Linux
5.9
Linux/Linux
912aae27c6af6605eae967ab540c5e26bd76d421 - 4165e02716518bbbe9c9104b39530d40928bc7ce
Linux/Linux
912aae27c6af6605eae967ab540c5e26bd76d421 - 88ec2ff42da3ac93b2437dc52fe25cd4372148e6
Linux/Linux
912aae27c6af6605eae967ab540c5e26bd76d421 - a14bd7475452c51835dd5a0cee4c8fa48dd0b539
... and 2 more
Published
Feb 26, 2025
Tracked Since
Feb 18, 2026