cbcvebase.
CVE-2022-49591
published 2025-02-26

CVE-2022-49591: In the Linux kernel, the following vulnerability has been resolved: net: dsa: microchip: ksz_common: Fix refcount leak bug In ksz_switch_register(), we should…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.9th percentile
In the Linux kernel, the following vulnerability has been resolved: net: dsa: microchip: ksz_common: Fix refcount leak bug In ksz_switch_register(), we should call of_node_put() for the reference returned by of_get_child_by_name() which has increased the refcount.

Affected

11 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.16-1 (bookworm)linux 5.18.16-1 (bookworm)
linuxlinux
linuxlinux>= 912aae27c6af6605eae967ab540c5e26bd76d421 < 88ec2ff42da3ac93b2437dc52fe25cd4372148e688ec2ff42da3ac93b2437dc52fe25cd4372148e6
linuxlinux>= 912aae27c6af6605eae967ab540c5e26bd76d421 < 4165e02716518bbbe9c9104b39530d40928bc7ce4165e02716518bbbe9c9104b39530d40928bc7ce
linuxlinux>= 912aae27c6af6605eae967ab540c5e26bd76d421 < a14bd7475452c51835dd5a0cee4c8fa48dd0b539a14bd7475452c51835dd5a0cee4c8fa48dd0b539
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.18.16-15.18.16-1
linuxlinux_kernel>= 0 < 5.18.16-15.18.16-1
linuxlinux_kernel>= 0 < 5.18.16-15.18.16-1
linuxlinux_kernel>= 5.16 < 5.18.155.18.15
linuxlinux_kernel>= 5.9 < 5.15.585.15.58

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.