CVE-2022-48860
published 2024-07-16CVE-2022-48860: In the Linux kernel, the following vulnerability has been resolved: ethernet: Fix error handling in xemaclite_of_probe This node pointer is returned by…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
ethernet: Fix error handling in xemaclite_of_probe
This node pointer is returned by of_parse_phandle() with refcount
incremented in this function. Calling of_node_put() to avoid the
refcount leak. As the remove function do.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.16.18-1 (bookworm) | linux 5.16.18-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < 669172ce976608b25a2f76f3c65d47f042d125c9 | 669172ce976608b25a2f76f3c65d47f042d125c9 |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < b7220f8e9d6c6b9594ddfb3125dad938cd478b1f | b7220f8e9d6c6b9594ddfb3125dad938cd478b1f |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < 8609e29611befc4bfbe7a91bb50fc65ae72ff549 | 8609e29611befc4bfbe7a91bb50fc65ae72ff549 |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < 8ee065a7a9b6a3976c16340503677efc4d8351f6 | 8ee065a7a9b6a3976c16340503677efc4d8351f6 |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < 979b418b96e35f07136f77962ccfaa54cf3e30e1 | 979b418b96e35f07136f77962ccfaa54cf3e30e1 |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < 5e7c402892e189a7bc152b125e72261154aa585d | 5e7c402892e189a7bc152b125e72261154aa585d |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < 1852854ee349881efb78ccdbbb237838975902e4 | 1852854ee349881efb78ccdbbb237838975902e4 |
| linux | linux | >= 5cdaaa12866e916d0ada8b56c5f0e543cfc7fe3d < b19ab4b38b06aae12442b2de95ccf58b5dc53584 | b19ab4b38b06aae12442b2de95ccf58b5dc53584 |
| linux | linux_kernel | >= 0 < 5.10.106-1 | 5.10.106-1 |
| linux | linux_kernel | >= 0 < 5.16.18-1 | 5.16.18-1 |
| linux | linux_kernel | >= 0 < 5.16.18-1 | 5.16.18-1 |
| linux | linux_kernel | >= 0 < 5.16.18-1 | 5.16.18-1 |
| linux | linux_kernel | >= 2.6.34 < 4.9.307 | 4.9.307 |
| linux | linux_kernel | >= 4.10 < 4.14.272 | 4.14.272 |
| linux | linux_kernel | >= 4.15 < 4.19.235 | 4.19.235 |
| linux | linux_kernel | >= 4.20 < 5.4.185 | 5.4.185 |
| linux | linux_kernel | >= 5.11 < 5.15.29 | 5.15.29 |
| linux | linux_kernel | >= 5.16 < 5.16.15 | 5.16.15 |
| linux | linux_kernel | >= 5.5 < 5.10.106 | 5.10.106 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: ethernet: Fix error handling in xemaclite_of_probe
vendor_redhat·2024-07-16·CVSS 5.5
CVE-2022-48860 [MEDIUM] CWE-401 kernel: ethernet: Fix error handling in xemaclite_of_probe
kernel: ethernet: Fix error handling in xemaclite_of_probe
In the Linux kernel, the following vulnerability has been resolved:
ethernet: Fix error handling in xemaclite_of_probe
This node pointer is returned by of_parse_phandle() with refcount
incremented in this function. Calling of_node_put() to avoid the
refcount leak. As the remove function do.
A flaw was found in the xilinx_emaclite module in the Linux kernel. A memory leak can occur due to an improper error handling when a device can't be registered, potentially impacting system performance and possibly resulting in a denial of service.
Statement: The xilinx_emaclite module is not built in the kernel shipped in Red Hat Enterprise Linux 8 and 9, so it is not affected by this vulnerability.
Package: kernel (Red Hat Enterprise Linux
Debian
CVE-2022-48860: linux - In the Linux kernel, the following vulnerability has been resolved: ethernet: F...
vendor_debian·2022·CVSS 5.5
CVE-2022-48860 [MEDIUM] CVE-2022-48860: linux - In the Linux kernel, the following vulnerability has been resolved: ethernet: F...
In the Linux kernel, the following vulnerability has been resolved: ethernet: Fix error handling in xemaclite_of_probe This node pointer is returned by of_parse_phandle() with refcount incremented in this function. Calling of_node_put() to avoid the refcount leak. As the remove function do.
Scope: local
bookworm: resolved (fixed in 5.16.18-1)
bullseye: resolved (fixed in 5.10.106-1)
forky: resolved (fixed in 5.16.18-1)
sid: resolved (fixed in 5.16.18-1)
trixie: resolved (fixed in 5.16.18-1)
OSV
CVE-2022-48860: In the Linux kernel, the following vulnerability has been resolved: ethernet: Fix error handling in xemaclite_of_probe This node pointer is returned b
osv·2024-07-16·CVSS 5.5
CVE-2022-48860 [MEDIUM] CVE-2022-48860: In the Linux kernel, the following vulnerability has been resolved: ethernet: Fix error handling in xemaclite_of_probe This node pointer is returned b
In the Linux kernel, the following vulnerability has been resolved: ethernet: Fix error handling in xemaclite_of_probe This node pointer is returned by of_parse_phandle() with refcount incremented in this function. Calling of_node_put() to avoid the refcount leak. As the remove function do.
GHSA
GHSA-qc77-c9gc-j3x6: In the Linux kernel, the following vulnerability has been resolved:
ethernet: Fix error handling in xemaclite_of_probe
This node pointer is returned
ghsa_unreviewed·2024-07-16
CVE-2022-48860 [MEDIUM] CWE-401 GHSA-qc77-c9gc-j3x6: In the Linux kernel, the following vulnerability has been resolved:
ethernet: Fix error handling in xemaclite_of_probe
This node pointer is returned
In the Linux kernel, the following vulnerability has been resolved:
ethernet: Fix error handling in xemaclite_of_probe
This node pointer is returned by of_parse_phandle() with refcount
incremented in this function. Calling of_node_put() to avoid the
refcount leak. As the remove function do.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/1852854ee349881efb78ccdbbb237838975902e4https://git.kernel.org/stable/c/5e7c402892e189a7bc152b125e72261154aa585dhttps://git.kernel.org/stable/c/669172ce976608b25a2f76f3c65d47f042d125c9https://git.kernel.org/stable/c/8609e29611befc4bfbe7a91bb50fc65ae72ff549https://git.kernel.org/stable/c/8ee065a7a9b6a3976c16340503677efc4d8351f6https://git.kernel.org/stable/c/979b418b96e35f07136f77962ccfaa54cf3e30e1https://git.kernel.org/stable/c/b19ab4b38b06aae12442b2de95ccf58b5dc53584https://git.kernel.org/stable/c/b7220f8e9d6c6b9594ddfb3125dad938cd478b1fhttps://git.kernel.org/stable/c/1852854ee349881efb78ccdbbb237838975902e4https://git.kernel.org/stable/c/5e7c402892e189a7bc152b125e72261154aa585dhttps://git.kernel.org/stable/c/669172ce976608b25a2f76f3c65d47f042d125c9https://git.kernel.org/stable/c/8609e29611befc4bfbe7a91bb50fc65ae72ff549https://git.kernel.org/stable/c/8ee065a7a9b6a3976c16340503677efc4d8351f6https://git.kernel.org/stable/c/979b418b96e35f07136f77962ccfaa54cf3e30e1https://git.kernel.org/stable/c/b19ab4b38b06aae12442b2de95ccf58b5dc53584https://git.kernel.org/stable/c/b7220f8e9d6c6b9594ddfb3125dad938cd478b1f
2024-07-16
Published