PT-2025-13294 · Linux+4 · Linux Kernel+4

Published

2023-11-07

·

Updated

2025-05-29

·

CVE-2022-49752

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A node refcount leak issue has been identified in the function fwnode graph get next endpoint(). This occurs because the parent returned by fwnode graph get port parent() has its refcount incremented when prev is not NULL, and it needs to be put when finished using it. To address this, a new variable is introduced to store the returned fwnode, which is then put before returning from fwnode graph get next endpoint().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Weakness Enumeration

Related Identifiers

BDU:2025-06298
CESA-2023_7077
CVE-2022-49752
RHSA-2023:6583
RHSA-2023:7077
RHSA-2023_6583
RHSA-2023_7077

Affected Products

Astra Linux
Centos
Linux Kernel
Red Hat
Red Os