cbcvebase.
CVE-2022-49396
published 2025-02-26

CVE-2022-49396: In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qmp: fix reset-controller leak on probe errors Make sure to release the lane…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
18.2th percentile
In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qmp: fix reset-controller leak on probe errors Make sure to release the lane reset controller in case of a late probe error (e.g. probe deferral). Note that due to the reset controller being defined in devicetree in "lane" child nodes, devm_reset_control_get_exclusive() cannot be used directly.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.5-1 (bookworm)linux 5.18.5-1 (bookworm)
linuxlinux
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < b7b5fbcaac5355e2e695dc0c08a0fcf248250388b7b5fbcaac5355e2e695dc0c08a0fcf248250388
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < a39d9eccb333b8c07c43ebea1c6dfda122378a0fa39d9eccb333b8c07c43ebea1c6dfda122378a0f
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < 7ac21b24af859c097eb4034e93430056068f8f317ac21b24af859c097eb4034e93430056068f8f31
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < 2156dc390402043ba5982489c6625adcb0b0975c2156dc390402043ba5982489c6625adcb0b0975c
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < ba173a6f8d8dffed64bb13ab23081bdddfb464f0ba173a6f8d8dffed64bb13ab23081bdddfb464f0
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < feb05b10b3ed3ae21b851520a0d0b71685439517feb05b10b3ed3ae21b851520a0d0b71685439517
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < 8c03eb0c8982677b4e17174073a011788891304d8c03eb0c8982677b4e17174073a011788891304d
linuxlinux>= e78f3d15e115e8e764d4b1562b4fa538f2e22f6b < 4d2900f20edfe541f75756a00deeb2ffe7c66bc14d2900f20edfe541f75756a00deeb2ffe7c66bc1
linuxlinux_kernel>= 0 < 5.10.127-15.10.127-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 0 < 5.18.5-15.18.5-1
linuxlinux_kernel>= 4.12 < 4.14.2834.14.283
linuxlinux_kernel>= 4.15 < 4.19.2474.19.247
linuxlinux_kernel>= 4.20 < 5.4.1985.4.198
linuxlinux_kernel>= 5.11 < 5.15.465.15.46
linuxlinux_kernel>= 5.16 < 5.17.145.17.14
linuxlinux_kernel>= 5.18 < 5.18.35.18.3
linuxlinux_kernel>= 5.5 < 5.10.1215.10.121

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.