cbcvebase.
CVE-2022-50120
published 2025-06-18

CVE-2022-50120: In the Linux kernel, the following vulnerability has been resolved: remoteproc: imx_rproc: Fix refcount leak in imx_rproc_addr_init of_parse_phandle() returns…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.16%
5.5th percentile
In the Linux kernel, the following vulnerability has been resolved: remoteproc: imx_rproc: Fix refcount leak in imx_rproc_addr_init of_parse_phandle() returns a node pointer with refcount incremented, we should use of_node_put() on it when not needed anymore. This function has two paths missing of_node_put().

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.19.6-1 (bookworm)linux 5.19.6-1 (bookworm)
linuxlinux
linuxlinux>= a0ff4aa6f010801b2a61c203c6e09d01b110fddf < 0dc1663e3fc22c72e1ab33be7701a0d51cca84ef0dc1663e3fc22c72e1ab33be7701a0d51cca84ef
linuxlinux>= a0ff4aa6f010801b2a61c203c6e09d01b110fddf < d8ac68927856c3a6d197a95be73c92ec0bd4b012d8ac68927856c3a6d197a95be73c92ec0bd4b012
linuxlinux>= a0ff4aa6f010801b2a61c203c6e09d01b110fddf < 16da9f84e26f89e58cac194ff19fefd9de27d97516da9f84e26f89e58cac194ff19fefd9de27d975
linuxlinux>= a0ff4aa6f010801b2a61c203c6e09d01b110fddf < 61afafe8b938bc74841cf4b1a73dd08b9d287c5a61afafe8b938bc74841cf4b1a73dd08b9d287c5a
linuxlinux_kernel>= 0 < 5.19.6-15.19.6-1
linuxlinux_kernel>= 0 < 5.19.6-15.19.6-1
linuxlinux_kernel>= 0 < 5.19.6-15.19.6-1
linuxlinux_kernel>= 4.14 < 5.15.615.15.61
linuxlinux_kernel>= 5.16 < 5.18.185.18.18
linuxlinux_kernel>= 5.19 < 5.19.25.19.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.