CVE-2022-50392
published 2025-09-18CVE-2022-50392: In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe() The…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.5th percentile
In the Linux kernel, the following vulnerability has been resolved:
ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe()
The node returned by of_parse_phandle() with refcount incremented,
of_node_put() needs be called when finish using it. So add it in the
error path in mt8183_mt6358_ts3a227_max98357_dev_probe().
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.4-1 (bookworm) | linux 6.1.4-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 11c0269017b212fd47c593307d2dc3eb9713b2d0 < 82f7c814edda353b4781f356d3ab90e943d5eac4 | 82f7c814edda353b4781f356d3ab90e943d5eac4 |
| linux | linux | >= 11c0269017b212fd47c593307d2dc3eb9713b2d0 < 574bd4d14a9297a1c69ad41001caf00fdd17d305 | 574bd4d14a9297a1c69ad41001caf00fdd17d305 |
| linux | linux | >= 11c0269017b212fd47c593307d2dc3eb9713b2d0 < 156b0c19c1a44153e34cfdfa5937546a93dcb288 | 156b0c19c1a44153e34cfdfa5937546a93dcb288 |
| linux | linux | >= 11c0269017b212fd47c593307d2dc3eb9713b2d0 < 38eef3be38ab895959c442702864212cc3beb96c | 38eef3be38ab895959c442702864212cc3beb96c |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 0 < 6.1.4-1 | 6.1.4-1 |
| linux | linux_kernel | >= 5.16 < 6.0.16 | 6.0.16 |
| linux | linux_kernel | >= 5.2 < 5.15.86 | 5.15.86 |
| linux | linux_kernel | >= 6.1 < 6.1.2 | 6.1.2 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: Linux kernel: Denial of Service in ASoC Mediatek due to refcount leak
vendor_redhat·2025-09-18·CVSS 5.5
CVE-2022-50392 [MEDIUM] CWE-772 kernel: Linux kernel: Denial of Service in ASoC Mediatek due to refcount leak
kernel: Linux kernel: Denial of Service in ASoC Mediatek due to refcount leak
In the Linux kernel, the following vulnerability has been resolved:
ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe()
The node returned by of_parse_phandle() with refcount incremented,
of_node_put() needs be called when finish using it. So add it in the
error path in mt8183_mt6358_ts3a227_max98357_dev_probe().
A flaw was found in the Linux kernel. A local user could exploit a refcount leak in the Audio System on Chip (ASoC) Mediatek component, specifically within the `mt8183_mt6358_ts3a227_max98357_dev_probe()` function. This vulnerability could lead to a Denial of Service (DoS) due to resource exhaustion.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Packa
Debian
CVE-2022-50392: linux - In the Linux kernel, the following vulnerability has been resolved: ASoC: media...
vendor_debian·2022·CVSS 5.5
CVE-2022-50392 [MEDIUM] CVE-2022-50392: linux - In the Linux kernel, the following vulnerability has been resolved: ASoC: media...
In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe() The node returned by of_parse_phandle() with refcount incremented, of_node_put() needs be called when finish using it. So add it in the error path in mt8183_mt6358_ts3a227_max98357_dev_probe().
Scope: local
bookworm: resolved (fixed in 6.1.4-1)
bullseye: open
forky: resolved (fixed in 6.1.4-1)
sid: resolved (fixed in 6.1.4-1)
trixie: resolved (fixed in 6.1.4-1)
OSV
CVE-2022-50392: In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_pr
osv·2025-09-18·CVSS 5.5
CVE-2022-50392 [MEDIUM] CVE-2022-50392: In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_pr
In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe() The node returned by of_parse_phandle() with refcount incremented, of_node_put() needs be called when finish using it. So add it in the error path in mt8183_mt6358_ts3a227_max98357_dev_probe().
GHSA
GHSA-4hgc-wr2q-wf2q: In the Linux kernel, the following vulnerability has been resolved:
ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_p
ghsa_unreviewed·2025-09-18
CVE-2022-50392 [MEDIUM] GHSA-4hgc-wr2q-wf2q: In the Linux kernel, the following vulnerability has been resolved:
ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_p
In the Linux kernel, the following vulnerability has been resolved:
ASoC: mediatek: mt8183: fix refcount leak in mt8183_mt6358_ts3a227_max98357_dev_probe()
The node returned by of_parse_phandle() with refcount incremented,
of_node_put() needs be called when finish using it. So add it in the
error path in mt8183_mt6358_ts3a227_max98357_dev_probe().
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-09-18
Published