CVE-2022-49617

MEDIUM

Linux Kernel 5.7-5.15.55, 5.16.0-5.18.12 - Denial of Service via ASoC Card Registration Error

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: sof_sdw: handle errors on card registration If the card registration fails, typically because of deferred probes, the device properties added for headset codecs are not removed, which leads to kernel oopses in driver bind/unbind tests. We already clean-up the device properties when the card is removed, this code can be moved as a helper and called upon card registration errors.

Scores

CVSS v3 5.5
EPSS 0.0025
EPSS Percentile 16.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (12)
linux/Kernel 5.16.0 - 5.18.13linux
linux/Kernel 5.7.0 - 5.15.56linux
Linux/Linux < 5.7
Linux/Linux 5.15.56 - 5.15.*
Linux/Linux 5.18.13 - 5.18.*
Linux/Linux 5.19
Linux/Linux 5.7
Linux/Linux 52db12d193d45728e738df6119702cba08fd46a2 - 09bca0ffc95c50369f1345d80ecfaca51864126f
Linux/Linux 52db12d193d45728e738df6119702cba08fd46a2 - f2556ce6b35ae0fc72000a4daa21ded12665e2f2
Linux/Linux 52db12d193d45728e738df6119702cba08fd46a2 - fe154c4ff376bc31041c6441958a08243df09c99
... and 2 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026