CVE-2022-49389
published 2025-02-26CVE-2022-49389: In the Linux kernel, the following vulnerability has been resolved: usb: usbip: fix a refcount leak in stub_probe() usb_get_dev() is called in…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.29%
21.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
usb: usbip: fix a refcount leak in stub_probe()
usb_get_dev() is called in stub_device_alloc(). When stub_probe() fails
after that, usb_put_dev() needs to be called to release the reference.
Fix this by moving usb_put_dev() to sdev_free error path handling.
Find this by code review.
Affected
28 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.18.5-1 (bookworm) | linux 5.18.5-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | >= 3.16.58 < 3.17 | 3.17 |
| linux | linux | >= 3.18.110 < 3.19 | 3.19 |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 6bafee2f18af5e5ac125e42960bc65496d0e56a0 | 6bafee2f18af5e5ac125e42960bc65496d0e56a0 |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < f20d2d3b3364ce6525c050a8b6b4c54c8c19674d | f20d2d3b3364ce6525c050a8b6b4c54c8c19674d |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 247d3809e45a34d9e1a3a2bb7012e31ed8b46031 | 247d3809e45a34d9e1a3a2bb7012e31ed8b46031 |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 2f0ae93ec33c8456cdfbf7876b80403a6318ebce | 2f0ae93ec33c8456cdfbf7876b80403a6318ebce |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < bcbb795a9e78180d74c6ab21518da87e803dfdce | bcbb795a9e78180d74c6ab21518da87e803dfdce |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 51422046be504515eb5a591adf0f424b62f46804 | 51422046be504515eb5a591adf0f424b62f46804 |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 8afb048800919d0ab10c57983940eba956339f21 | 8afb048800919d0ab10c57983940eba956339f21 |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 11c65408bd0ba1d9cd1307caa38169292de9cdfb | 11c65408bd0ba1d9cd1307caa38169292de9cdfb |
| linux | linux | >= 3ff67445750a84de67faaf52c6e1895cb09f2c56 < 9ec4cbf1cc55d126759051acfe328d489c5d6e60 | 9ec4cbf1cc55d126759051acfe328d489c5d6e60 |
| linux | linux_kernel | >= 0 < 5.10.127-1 | 5.10.127-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 3.16.58 < 3.17 | 3.17 |
| linux | linux_kernel | >= 3.18.110 < 4.9.318 | 4.9.318 |
| linux | linux_kernel | >= 4.10 < 4.14.283 | 4.14.283 |
| linux | linux_kernel | >= 4.15 < 4.19.247 | 4.19.247 |
| linux | linux_kernel | >= 4.20 < 5.4.198 | 5.4.198 |
| linux | linux_kernel | >= 5.11 < 5.15.47 | 5.15.47 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cp2p-wmjj-5m7m: In the Linux kernel, the following vulnerability has been resolved:
usb: usbip: fix a refcount leak in stub_probe()
usb_get_dev() is called in stub_
ghsa_unreviewed·2025-04-17
CVE-2022-49389 [MEDIUM] GHSA-cp2p-wmjj-5m7m: In the Linux kernel, the following vulnerability has been resolved:
usb: usbip: fix a refcount leak in stub_probe()
usb_get_dev() is called in stub_
In the Linux kernel, the following vulnerability has been resolved:
usb: usbip: fix a refcount leak in stub_probe()
usb_get_dev() is called in stub_device_alloc(). When stub_probe() fails
after that, usb_put_dev() needs to be called to release the reference.
Fix this by moving usb_put_dev() to sdev_free error path handling.
Find this by code review.
OSV
CVE-2022-49389: In the Linux kernel, the following vulnerability has been resolved: usb: usbip: fix a refcount leak in stub_probe() usb_get_dev() is called in stub_de
osv·2025-02-26·CVSS 5.5
CVE-2022-49389 [MEDIUM] CVE-2022-49389: In the Linux kernel, the following vulnerability has been resolved: usb: usbip: fix a refcount leak in stub_probe() usb_get_dev() is called in stub_de
In the Linux kernel, the following vulnerability has been resolved: usb: usbip: fix a refcount leak in stub_probe() usb_get_dev() is called in stub_device_alloc(). When stub_probe() fails after that, usb_put_dev() needs to be called to release the reference. Fix this by moving usb_put_dev() to sdev_free error path handling. Find this by code review.
Red Hat
kernel: usb: usbip: fix a refcount leak in stub_probe()
vendor_redhat·2025-02-26·CVSS 5.5
CVE-2022-49389 [MEDIUM] CWE-401 kernel: usb: usbip: fix a refcount leak in stub_probe()
kernel: usb: usbip: fix a refcount leak in stub_probe()
In the Linux kernel, the following vulnerability has been resolved:
usb: usbip: fix a refcount leak in stub_probe()
usb_get_dev() is called in stub_device_alloc(). When stub_probe() fails
after that, usb_put_dev() needs to be called to release the reference.
Fix this by moving usb_put_dev() to sdev_free error path handling.
Find this by code review.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-r
Debian
CVE-2022-49389: linux - In the Linux kernel, the following vulnerability has been resolved: usb: usbip:...
vendor_debian·2022·CVSS 5.5
CVE-2022-49389 [MEDIUM] CVE-2022-49389: linux - In the Linux kernel, the following vulnerability has been resolved: usb: usbip:...
In the Linux kernel, the following vulnerability has been resolved: usb: usbip: fix a refcount leak in stub_probe() usb_get_dev() is called in stub_device_alloc(). When stub_probe() fails after that, usb_put_dev() needs to be called to release the reference. Fix this by moving usb_put_dev() to sdev_free error path handling. Find this by code review.
Scope: local
bookworm: resolved (fixed in 5.18.5-1)
bullseye: resolved (fixed in 5.10.127-1)
forky: resolved (fixed in 5.18.5-1)
sid: resolved (fixed in 5.18.5-1)
trixie: resolved (fixed in 5.18.5-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/11c65408bd0ba1d9cd1307caa38169292de9cdfbhttps://git.kernel.org/stable/c/247d3809e45a34d9e1a3a2bb7012e31ed8b46031https://git.kernel.org/stable/c/2f0ae93ec33c8456cdfbf7876b80403a6318ebcehttps://git.kernel.org/stable/c/51422046be504515eb5a591adf0f424b62f46804https://git.kernel.org/stable/c/6bafee2f18af5e5ac125e42960bc65496d0e56a0https://git.kernel.org/stable/c/8afb048800919d0ab10c57983940eba956339f21https://git.kernel.org/stable/c/9ec4cbf1cc55d126759051acfe328d489c5d6e60https://git.kernel.org/stable/c/bcbb795a9e78180d74c6ab21518da87e803dfdcehttps://git.kernel.org/stable/c/f20d2d3b3364ce6525c050a8b6b4c54c8c19674d
2025-02-26
Published