cbcvebase.
CVE-2022-50176
published 2025-06-18

CVE-2022-50176: In the Linux kernel, the following vulnerability has been resolved: drm/mcde: Fix refcount leak in mcde_dsi_bind Every iteration of…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.21%
11.2th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/mcde: Fix refcount leak in mcde_dsi_bind Every iteration of for_each_available_child_of_node() decrements the reference counter of the previous node. There is no decrement when break out from the loop and results in refcount leak. Add missing of_node_put() to fix this.

Affected

17 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.2-1 (bookworm)linux 6.0.2-1 (bookworm)
linuxlinux
linuxlinux>= 5fc537bfd00033a3f813330175f7f12c25957ebf < 87c35bbefdfa3c5edfb8c80f5c04717aaacc629d87c35bbefdfa3c5edfb8c80f5c04717aaacc629d
linuxlinux>= 5fc537bfd00033a3f813330175f7f12c25957ebf < f57699a9b66ea11f000f56d1f1179059239b8690f57699a9b66ea11f000f56d1f1179059239b8690
linuxlinux>= 5fc537bfd00033a3f813330175f7f12c25957ebf < 3123ae6fdd4013d24a3a4877084b14e917faae5c3123ae6fdd4013d24a3a4877084b14e917faae5c
linuxlinux>= 5fc537bfd00033a3f813330175f7f12c25957ebf < 7214902de5b1fb2b632a7b8b3b9540e41aabab387214902de5b1fb2b632a7b8b3b9540e41aabab38
linuxlinux>= 5fc537bfd00033a3f813330175f7f12c25957ebf < 32c827e30bb44ae809950a9efab59e98e44d30e532c827e30bb44ae809950a9efab59e98e44d30e5
linuxlinux>= 5fc537bfd00033a3f813330175f7f12c25957ebf < 3a149169e4a2f9127022fec6ef5d71b4e804b3b93a149169e4a2f9127022fec6ef5d71b4e804b3b9
linuxlinux_kernel>= 0 < 5.10.140-15.10.140-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 0 < 6.0.2-16.0.2-1
linuxlinux_kernel>= 5.11 < 5.15.615.15.61
linuxlinux_kernel>= 5.16 < 5.18.185.18.18
linuxlinux_kernel>= 5.19 < 5.19.25.19.2
linuxlinux_kernel>= 5.3 < 5.4.2115.4.211
linuxlinux_kernel>= 5.5 < 5.10.1375.10.137

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.