CVE-2022-50249
published 2025-09-15CVE-2022-50249: In the Linux kernel, the following vulnerability has been resolved: memory: of: Fix refcount leak bug in of_get_ddr_timings() We should add the of_node_put()…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
memory: of: Fix refcount leak bug in of_get_ddr_timings()
We should add the of_node_put() when breaking out of
for_each_child_of_node() as it will automatically increase
and decrease the refcount.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.3-1 (bookworm) | linux 6.0.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < a4d0bd4388e1a39df47e8aaa044ef6a7ee626e48 | a4d0bd4388e1a39df47e8aaa044ef6a7ee626e48 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < a4f7eb83852a65b6f8dea7dcc42b7c76d4d9b0a3 | a4f7eb83852a65b6f8dea7dcc42b7c76d4d9b0a3 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < 68c9c4e6495b825be3a8946df1a0148399555fe4 | 68c9c4e6495b825be3a8946df1a0148399555fe4 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < 85a40bfb8e7a170abcf9dae2c0898a1983e48daa | 85a40bfb8e7a170abcf9dae2c0898a1983e48daa |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < daaec4b3fe2297b022c6b2d6bf48b6e5265a60b9 | daaec4b3fe2297b022c6b2d6bf48b6e5265a60b9 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < 2680690f9ce4e6abbb4f559e97271c15b7eeda97 | 2680690f9ce4e6abbb4f559e97271c15b7eeda97 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < 62ccab6e3376f8a22167c3b81468ae4f3e7d25f1 | 62ccab6e3376f8a22167c3b81468ae4f3e7d25f1 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < 1c6cac6fa4d08aea161f83d38117d733b3c3a000 | 1c6cac6fa4d08aea161f83d38117d733b3c3a000 |
| linux | linux | >= e6b42eb6a66c188642aeb447312938c6f6ebee86 < 05215fb32010d4afb68fbdbb4d237df6e2d4567b | 05215fb32010d4afb68fbdbb4d237df6e2d4567b |
| linux | linux_kernel | >= 0 < 5.10.158-1 | 5.10.158-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 3.7 < 4.9.331 | 4.9.331 |
| linux | linux_kernel | >= 4.10 < 4.14.296 | 4.14.296 |
| linux | linux_kernel | >= 4.15 < 4.19.262 | 4.19.262 |
| linux | linux_kernel | >= 4.20 < 5.4.220 | 5.4.220 |
| linux | linux_kernel | >= 5.11 < 5.15.75 | 5.15.75 |
| linux | linux_kernel | >= 5.16 < 5.19.17 | 5.19.17 |
| linux | linux_kernel | >= 5.5 < 5.10.150 | 5.10.150 |
| linux | linux_kernel | >= 6.0 < 6.0.3 | 6.0.3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: memory: of: Fix refcount leak bug in of_get_ddr_timings()
vendor_redhat·2025-09-15·CVSS 5.5
CVE-2022-50249 [MEDIUM] CWE-772 kernel: memory: of: Fix refcount leak bug in of_get_ddr_timings()
kernel: memory: of: Fix refcount leak bug in of_get_ddr_timings()
In the Linux kernel, the following vulnerability has been resolved:
memory: of: Fix refcount leak bug in of_get_ddr_timings()
We should add the of_node_put() when breaking out of
for_each_child_of_node() as it will automatically increase
and decrease the refcount.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Fix deferred
Debian
CVE-2022-50249: linux - In the Linux kernel, the following vulnerability has been resolved: memory: of:...
vendor_debian·2022·CVSS 5.5
CVE-2022-50249 [MEDIUM] CVE-2022-50249: linux - In the Linux kernel, the following vulnerability has been resolved: memory: of:...
In the Linux kernel, the following vulnerability has been resolved: memory: of: Fix refcount leak bug in of_get_ddr_timings() We should add the of_node_put() when breaking out of for_each_child_of_node() as it will automatically increase and decrease the refcount.
Scope: local
bookworm: resolved (fixed in 6.0.3-1)
bullseye: resolved (fixed in 5.10.158-1)
forky: resolved (fixed in 6.0.3-1)
sid: resolved (fixed in 6.0.3-1)
trixie: resolved (fixed in 6.0.3-1)
OSV
CVE-2022-50249: In the Linux kernel, the following vulnerability has been resolved: memory: of: Fix refcount leak bug in of_get_ddr_timings() We should add the of_nod
osv·2025-09-15·CVSS 5.5
CVE-2022-50249 [MEDIUM] CVE-2022-50249: In the Linux kernel, the following vulnerability has been resolved: memory: of: Fix refcount leak bug in of_get_ddr_timings() We should add the of_nod
In the Linux kernel, the following vulnerability has been resolved: memory: of: Fix refcount leak bug in of_get_ddr_timings() We should add the of_node_put() when breaking out of for_each_child_of_node() as it will automatically increase and decrease the refcount.
GHSA
GHSA-hvjq-6cc4-mmg6: In the Linux kernel, the following vulnerability has been resolved:
memory: of: Fix refcount leak bug in of_get_ddr_timings()
We should add the of_n
ghsa_unreviewed·2025-09-15
CVE-2022-50249 [MEDIUM] GHSA-hvjq-6cc4-mmg6: In the Linux kernel, the following vulnerability has been resolved:
memory: of: Fix refcount leak bug in of_get_ddr_timings()
We should add the of_n
In the Linux kernel, the following vulnerability has been resolved:
memory: of: Fix refcount leak bug in of_get_ddr_timings()
We should add the of_node_put() when breaking out of
for_each_child_of_node() as it will automatically increase
and decrease the refcount.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/05215fb32010d4afb68fbdbb4d237df6e2d4567bhttps://git.kernel.org/stable/c/1c6cac6fa4d08aea161f83d38117d733b3c3a000https://git.kernel.org/stable/c/2680690f9ce4e6abbb4f559e97271c15b7eeda97https://git.kernel.org/stable/c/62ccab6e3376f8a22167c3b81468ae4f3e7d25f1https://git.kernel.org/stable/c/68c9c4e6495b825be3a8946df1a0148399555fe4https://git.kernel.org/stable/c/85a40bfb8e7a170abcf9dae2c0898a1983e48daahttps://git.kernel.org/stable/c/a4d0bd4388e1a39df47e8aaa044ef6a7ee626e48https://git.kernel.org/stable/c/a4f7eb83852a65b6f8dea7dcc42b7c76d4d9b0a3https://git.kernel.org/stable/c/daaec4b3fe2297b022c6b2d6bf48b6e5265a60b9
2025-09-15
Published