CVE-2022-49488
published 2025-02-26CVE-2022-49488: In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected There is a…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
18.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
There is a possibility for mdp5_get_global_state to return
-EDEADLK when acquiring the modeset lock, but currently global_state in
mdp5_mixer_release doesn't check for if an error is returned.
To avoid a NULL dereference error, let's have mdp5_mixer_release
check if an error is returned and propagate that error.
Patchwork: https://patchwork.freedesktop.org/patch/485181/
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.18.5-1 (bookworm) | linux 5.18.5-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < 1a5d1474026ea4f1a6f931075ca2adb884af39cf | 1a5d1474026ea4f1a6f931075ca2adb884af39cf |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < 22d8424913b1348c6324916745fadaeea5273f0e | 22d8424913b1348c6324916745fadaeea5273f0e |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < 883f1d52a57bf51e1d7a80c432345e2c6222477e | 883f1d52a57bf51e1d7a80c432345e2c6222477e |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < 09bdeedc1fc53e64b8282e1de67752c69e43bdba | 09bdeedc1fc53e64b8282e1de67752c69e43bdba |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < 47e393061049aff6818d1b9fdca7351411a23fc2 | 47e393061049aff6818d1b9fdca7351411a23fc2 |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < 46e5ce63924a96af452c4fc5ee0bb3b241e1b9f4 | 46e5ce63924a96af452c4fc5ee0bb3b241e1b9f4 |
| linux | linux | >= 7907a0d77cb461f58045763c205a5830be72e97c < ca75f6f7c6f89365e40f10f641b15981b1f07c31 | ca75f6f7c6f89365e40f10f641b15981b1f07c31 |
| linux | linux_kernel | >= 0 < 5.10.127-1 | 5.10.127-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 4.18 < 4.19.247 | 4.19.247 |
| linux | linux_kernel | >= 4.20 < 5.4.198 | 5.4.198 |
| linux | linux_kernel | >= 5.11 < 5.15.46 | 5.15.46 |
| linux | linux_kernel | >= 5.16 < 5.17.14 | 5.17.14 |
| linux | linux_kernel | >= 5.18 < 5.18.3 | 5.18.3 |
| linux | linux_kernel | >= 5.5 < 5.10.121 | 5.10.121 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
vendor_redhat·2025-02-26·CVSS 5.5
CVE-2022-49488 [MEDIUM] kernel: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
kernel: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
In the Linux kernel, the following vulnerability has been resolved:
drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
There is a possibility for mdp5_get_global_state to return
-EDEADLK when acquiring the modeset lock, but currently global_state in
mdp5_mixer_release doesn't check for if an error is returned.
To avoid a NULL dereference error, let's have mdp5_mixer_release
check if an error is returned and propagate that error.
Patchwork: https://patchwork.freedesktop.org/patch/485181/
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Packa
Debian
CVE-2022-49488: linux - In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp...
vendor_debian·2022·CVSS 5.5
CVE-2022-49488 [MEDIUM] CVE-2022-49488: linux - In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp...
In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected There is a possibility for mdp5_get_global_state to return -EDEADLK when acquiring the modeset lock, but currently global_state in mdp5_mixer_release doesn't check for if an error is returned. To avoid a NULL dereference error, let's have mdp5_mixer_release check if an error is returned and propagate that error. Patchwork: https://patchwork.freedesktop.org/patch/485181/
Scope: local
bookworm: resolved (fixed in 5.18.5-1)
bullseye: resolved (fixed in 5.10.127-1)
forky: resolved (fixed in 5.18.5-1)
sid: resolved (fixed in 5.18.5-1)
trixie: resolved (fixed in 5.18.5-1)
GHSA
GHSA-q823-7v63-v327: In the Linux kernel, the following vulnerability has been resolved:
drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
ghsa_unreviewed·2025-10-22
CVE-2022-49488 [MEDIUM] CWE-476 GHSA-q823-7v63-v327: In the Linux kernel, the following vulnerability has been resolved:
drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
In the Linux kernel, the following vulnerability has been resolved:
drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected
There is a possibility for mdp5_get_global_state to return
-EDEADLK when acquiring the modeset lock, but currently global_state in
mdp5_mixer_release doesn't check for if an error is returned.
To avoid a NULL dereference error, let's have mdp5_mixer_release
check if an error is returned and propagate that error.
Patchwork: https://patchwork.freedesktop.org/patch/485181/
OSV
CVE-2022-49488: In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected Th
osv·2025-02-26·CVSS 5.5
CVE-2022-49488 [MEDIUM] CVE-2022-49488: In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected Th
In the Linux kernel, the following vulnerability has been resolved: drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected There is a possibility for mdp5_get_global_state to return -EDEADLK when acquiring the modeset lock, but currently global_state in mdp5_mixer_release doesn't check for if an error is returned. To avoid a NULL dereference error, let's have mdp5_mixer_release check if an error is returned and propagate that error. Patchwork: https://patchwork.freedesktop.org/patch/485181/
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/09bdeedc1fc53e64b8282e1de67752c69e43bdbahttps://git.kernel.org/stable/c/1a5d1474026ea4f1a6f931075ca2adb884af39cfhttps://git.kernel.org/stable/c/22d8424913b1348c6324916745fadaeea5273f0ehttps://git.kernel.org/stable/c/46e5ce63924a96af452c4fc5ee0bb3b241e1b9f4https://git.kernel.org/stable/c/47e393061049aff6818d1b9fdca7351411a23fc2https://git.kernel.org/stable/c/883f1d52a57bf51e1d7a80c432345e2c6222477ehttps://git.kernel.org/stable/c/ca75f6f7c6f89365e40f10f641b15981b1f07c31
2025-02-26
Published