cbcvebase.
CVE-2022-50489
published 2025-10-04

CVE-2022-50489: In the Linux kernel, the following vulnerability has been resolved: drm/mipi-dsi: Detach devices when removing the host Whenever the MIPI-DSI host is…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.15%
4.7th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/mipi-dsi: Detach devices when removing the host Whenever the MIPI-DSI host is unregistered, the code of mipi_dsi_host_unregister() loops over every device currently found on that bus and will unregister it. However, it doesn't detach it from the bus first, which leads to all kind of resource leaks if the host wants to perform some clean up whenever a device is detached.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.3-1 (bookworm)linux 6.0.3-1 (bookworm)
linuxlinux
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < c202cda08cd5693645d4990ad1eb2e8068a884ecc202cda08cd5693645d4990ad1eb2e8068a884ec
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 262364574b05676d4b9ebde2ddd3588cd2efd8ce262364574b05676d4b9ebde2ddd3588cd2efd8ce
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 95ae458209f5a556bba98aff872f933694914eb795ae458209f5a556bba98aff872f933694914eb7
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 8242167cfc83dd7e4c96f44b45f108db9bb881468242167cfc83dd7e4c96f44b45f108db9bb88146
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 45120fa5e522d444e3fc1c5a9afc5d53eed91d0045120fa5e522d444e3fc1c5a9afc5d53eed91d00
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 26c1b4cfe56f040f71a51c92da1f4cac2e3b945526c1b4cfe56f040f71a51c92da1f4cac2e3b9455
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 353ab1c13fdd6e524edde780235a8ce9b892c81c353ab1c13fdd6e524edde780235a8ce9b892c81c
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 6fc2cd40db1969ba372ce9536dcfcdb87271eac46fc2cd40db1969ba372ce9536dcfcdb87271eac4
linuxlinux>= 068a00233969833f1ba925e7627797489efd6041 < 668a8f17b5290d04ef7343636a5588a0692731a1668a8f17b5290d04ef7343636a5588a0692731a1
linuxlinux_kernel>= 0 < 5.10.158-15.10.158-1
linuxlinux_kernel>= 0 < 6.0.3-16.0.3-1
linuxlinux_kernel>= 0 < 6.0.3-16.0.3-1
linuxlinux_kernel>= 0 < 6.0.3-16.0.3-1
linuxlinux_kernel>= 3.14 < 4.9.3314.9.331
linuxlinux_kernel>= 4.10 < 4.14.2964.14.296
linuxlinux_kernel>= 4.15 < 4.19.2624.19.262
linuxlinux_kernel>= 4.20 < 5.4.2205.4.220
linuxlinux_kernel>= 5.11 < 5.15.755.15.75
linuxlinux_kernel>= 5.16 < 5.19.175.19.17
linuxlinux_kernel>= 5.5 < 5.10.1505.10.150
linuxlinux_kernel>= 6.0 < 6.0.36.0.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.