PT-2025-8065 · Linux+2 · Linux Kernel+2

Xin Xiong

·

Published

2025-02-26

·

Updated

2025-05-20

·

CVE-2022-49137

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A reference count leak issue exists in the Linux kernel, specifically in the drm/amd/amdgpu/amdgpu cs module. The problem occurs in the amdgpu cs fence to handle ioctl() function when the info->in.what value falls into the default case, causing the function to return an error code without decrementing the reference count of a dma fence object. This can result in reference count leaks.
Recommendations For the affected Linux kernel version, apply the fix by decreasing the reference count of the specific object before returning the error code in the amdgpu cs fence to handle ioctl() function.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2022-49137
OESA-2025-1282
OPENSUSE-SU-2025_1263-1
SUSE-SU-2025:01600-1
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1194-1
SUSE-SU-2025:1241-1
SUSE-SU-2025:1263-1
SUSE-SU-2025_01600-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1241-1
SUSE-SU-2025_1263-1

Affected Products

Astra Linux
Linux Kernel
Suse