PT-2024-11830 · Linux+2 · Linux Kernel+2

Wang Yufen

·

Published

2022-12-06

·

Updated

2025-02-11

·

CVE-2022-48965

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A refcount leak has been resolved in the Linux kernel, specifically in the rockchip gpiolib register() function. The issue occurred because the node returned by of get parent() had its refcount incremented, but of node put() was not called when it was finished being used. To fix this, of node put() has been added to the end of of pinctrl get().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Release of Resource after Effective Lifetime

Weakness Enumeration

Related Identifiers

BDU:2025-01698
CVE-2022-48965

Affected Products

Astra Linux
Linux Kernel
Red Os