cbcvebase.
CVE-2022-49609
published 2025-02-26

CVE-2022-49609: In the Linux kernel, the following vulnerability has been resolved: power/reset: arm-versatile: Fix refcount leak in versatile_reboot_probe…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.7th percentile
In the Linux kernel, the following vulnerability has been resolved: power/reset: arm-versatile: Fix refcount leak in versatile_reboot_probe of_find_matching_node_and_match() returns a node pointer with refcount incremented, we should use of_node_put() on it when not need anymore. Add missing of_node_put() to avoid refcount leak.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.18.16-1 (bookworm)linux 5.18.16-1 (bookworm)
linuxlinux
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < b4d224eec96a18fa8959512cd9e5b6a50bd16a41b4d224eec96a18fa8959512cd9e5b6a50bd16a41
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < a9ed3ad3a8d1dfbc829d86edb3236873a315db11a9ed3ad3a8d1dfbc829d86edb3236873a315db11
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < 6689754b121bd487f99680280102b3a5cd7374af6689754b121bd487f99680280102b3a5cd7374af
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < 78bdf732cf5d74d1c6ecda06830a91f80a4aef6f78bdf732cf5d74d1c6ecda06830a91f80a4aef6f
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < 493ceca3271316e74639c89ff8ac35883de64256493ceca3271316e74639c89ff8ac35883de64256
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < 71ab83ac65e2d671552374123bf920c1d698335a71ab83ac65e2d671552374123bf920c1d698335a
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < 49fa778ee044b00471dd9ccae5f6a121fffea1ac49fa778ee044b00471dd9ccae5f6a121fffea1ac
linuxlinux>= 0e545f57b708630c54c8c5c24ea7f7034f6c40d9 < 80192eff64eee9b3bc0594a47381937b94b9d65a80192eff64eee9b3bc0594a47381937b94b9d65a
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.136-15.10.136-1
linuxlinux_kernel>= 0 < 5.18.16-15.18.16-1
linuxlinux_kernel>= 0 < 5.18.16-15.18.16-1
linuxlinux_kernel>= 0 < 5.18.16-15.18.16-1
linuxlinux_kernel>= 3.18 < 4.9.3254.9.325
linuxlinux_kernel>= 4.10 < 4.14.2904.14.290
linuxlinux_kernel>= 4.15 < 4.19.2544.19.254
linuxlinux_kernel>= 4.20 < 5.4.2085.4.208
linuxlinux_kernel>= 5.11 < 5.15.585.15.58
linuxlinux_kernel>= 5.16 < 5.18.155.18.15
linuxlinux_kernel>= 5.5 < 5.10.1345.10.134

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.