CVE-2022-50017
published 2025-06-18CVE-2022-50017: In the Linux kernel, the following vulnerability has been resolved: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start We should call…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.16%
5.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
We should call of_node_put() for the reference 'uctl_node' returned by
of_get_parent() which will increase the refcount. Otherwise, there will
be a refcount leak bug.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.2-1 (bookworm) | linux 6.0.2-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < 9d1afa0169a84dcd5b79901d792edeb8403684ab | 9d1afa0169a84dcd5b79901d792edeb8403684ab |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < af87a469695dc2b2419b2fdff0bf41db5265b325 | af87a469695dc2b2419b2fdff0bf41db5265b325 |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < c06166a484eece51916dd700a870e53356b7e1bc | c06166a484eece51916dd700a870e53356b7e1bc |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < 1b49707df679b5510ed06ace7378ddc2aec5c3fb | 1b49707df679b5510ed06ace7378ddc2aec5c3fb |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < 1e39037e44d7fa3728686af146f9285ea197097d | 1e39037e44d7fa3728686af146f9285ea197097d |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < 7822d994eb9579a1df4cdbc315db090a041e50f3 | 7822d994eb9579a1df4cdbc315db090a041e50f3 |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < a80016c40cc797c7f3e5a705b8e12ae447280335 | a80016c40cc797c7f3e5a705b8e12ae447280335 |
| linux | linux | >= a95cfa6b86a19a822877e75d5a73b2a95d249e70 < 7a9f743ceead60ed454c46fbc3085ee9a79cbebb | 7a9f743ceead60ed454c46fbc3085ee9a79cbebb |
| linux | linux_kernel | < 4.9.326 | 4.9.326 |
| linux | linux_kernel | >= 0 < 5.10.140-1 | 5.10.140-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 4.10 < 4.14.291 | 4.14.291 |
| linux | linux_kernel | >= 4.15 < 4.19.256 | 4.19.256 |
| linux | linux_kernel | >= 4.20 < 5.4.211 | 5.4.211 |
| linux | linux_kernel | >= 5.11 < 5.15.63 | 5.15.63 |
| linux | linux_kernel | >= 5.16 < 5.19.4 | 5.19.4 |
| linux | linux_kernel | >= 5.5 < 5.10.138 | 5.10.138 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2022-50017: In the Linux kernel, the following vulnerability has been resolved: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start We shou
osv·2025-06-18·CVSS 5.5
CVE-2022-50017 [MEDIUM] CVE-2022-50017: In the Linux kernel, the following vulnerability has been resolved: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start We shou
In the Linux kernel, the following vulnerability has been resolved: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start We should call of_node_put() for the reference 'uctl_node' returned by of_get_parent() which will increase the refcount. Otherwise, there will be a refcount leak bug.
GHSA
GHSA-4x6m-cqxf-jch7: In the Linux kernel, the following vulnerability has been resolved:
mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
We sh
ghsa_unreviewed·2025-06-18
CVE-2022-50017 [MEDIUM] GHSA-4x6m-cqxf-jch7: In the Linux kernel, the following vulnerability has been resolved:
mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
We sh
In the Linux kernel, the following vulnerability has been resolved:
mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
We should call of_node_put() for the reference 'uctl_node' returned by
of_get_parent() which will increase the refcount. Otherwise, there will
be a refcount leak bug.
Red Hat
kernel: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
vendor_redhat·2025-06-18·CVSS 5.5
CVE-2022-50017 [MEDIUM] kernel: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
kernel: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
In the Linux kernel, the following vulnerability has been resolved:
mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start
We should call of_node_put() for the reference 'uctl_node' returned by
of_get_parent() which will increase the refcount. Otherwise, there will
be a refcount leak bug.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterpr
Debian
CVE-2022-50017: linux - In the Linux kernel, the following vulnerability has been resolved: mips: caviu...
vendor_debian·2022·CVSS 5.5
CVE-2022-50017 [MEDIUM] CVE-2022-50017: linux - In the Linux kernel, the following vulnerability has been resolved: mips: caviu...
In the Linux kernel, the following vulnerability has been resolved: mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start We should call of_node_put() for the reference 'uctl_node' returned by of_get_parent() which will increase the refcount. Otherwise, there will be a refcount leak bug.
Scope: local
bookworm: resolved (fixed in 6.0.2-1)
bullseye: resolved (fixed in 5.10.140-1)
forky: resolved (fixed in 6.0.2-1)
sid: resolved (fixed in 6.0.2-1)
trixie: resolved (fixed in 6.0.2-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/1b49707df679b5510ed06ace7378ddc2aec5c3fbhttps://git.kernel.org/stable/c/1e39037e44d7fa3728686af146f9285ea197097dhttps://git.kernel.org/stable/c/7822d994eb9579a1df4cdbc315db090a041e50f3https://git.kernel.org/stable/c/7a9f743ceead60ed454c46fbc3085ee9a79cbebbhttps://git.kernel.org/stable/c/9d1afa0169a84dcd5b79901d792edeb8403684abhttps://git.kernel.org/stable/c/a80016c40cc797c7f3e5a705b8e12ae447280335https://git.kernel.org/stable/c/af87a469695dc2b2419b2fdff0bf41db5265b325https://git.kernel.org/stable/c/c06166a484eece51916dd700a870e53356b7e1bc
2025-06-18
Published