CVE-2022-50574

UnknownEPSS 0.20%

Last modified

CVE-2022-50574 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: drm/omap: dss: Fix refcount leak bugs In dss_init_ports() and __dss_uninit_ports(), we should call of_node_put() for the reference returned by of_graph_get_port_by_id() in fail path or when it is not used anymore.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: drm/omap: dss: Fix refcount leak bugs In dss_init_ports() and __dss_uninit_ports(), we should call of_node_put() for the reference returned by of_graph_get_port_by_id() in fail path or when it is not used anymore.

Metrics

EPSS Probability
0.20%

10.0th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 09bffa6e519256c6fa1552d6ba1f5d594337a464, < 9d7af9b1624dd70b67354972d7297429e6372091; >= 09bffa6e519256c6fa1552d6ba1f5d594337a464, < 1f340e1c1c74d11c45a6e32663829b26acd4f47b; >= 09bffa6e519256c6fa1552d6ba1f5d594337a464, < a5ce83e85d795ec98697039ecc518b21d5810adc; >= 09bffa6e519256c6fa1552d6ba1f5d594337a464, < e55261beb86a15c190b2ff9090cb47bc06765353; >= 09bffa6e519256c6fa1552d6ba1f5d594337a464, < 8f7c4114db841497e1148598e22548dd1f700b22; >= 09bffa6e519256c6fa1552d6ba1f5d594337a464, < 8b42057e62120813ebe9274f508fa785b7cab33a
LinuxLinux4.12

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2022-50574?
In the Linux kernel, the following vulnerability has been resolved: drm/omap: dss: Fix refcount leak bugs In dss_init_ports() and __dss_uninit_ports(), we should call of_node_put() for the reference returned by of_graph_get_port_by_id() in fail path or when it is not used anymore.
How severe is CVE-2022-50574?
Severity scoring for CVE-2022-50574 is pending analysis. The EPSS model estimates a 0.20% probability of exploitation in the next 30 days.
How do I fix CVE-2022-50574?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2022

Are you affected by CVE-2022-50574?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST