PT-2025-8550 · Linux+3 · Linux Kernel+3

Pierre-Louis Bossart

·

Published

2022-01-01

·

Updated

2026-03-14

·

CVE-2022-49617

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A issue in the Linux kernel has been identified where the device properties added for headset codecs are not removed if card registration fails, typically due to deferred probes. This can lead to kernel oopses in driver bind/unbind tests. The code that cleans up device properties when the card is removed can be moved as a helper and called upon card registration errors.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02228
CVE-2022-49617
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1241-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1241-1

Affected Products

Astra Linux
Debian
Linux Kernel
Suse