VYPR
Medium severity5.5NVD Advisory· Published Feb 26, 2025· Updated Jun 17, 2026

CVE-2022-49240

CVE-2022-49240

Description

In the Linux kernel, the following vulnerability has been resolved:

ASoC: mediatek: mt8195: Fix error handling in mt8195_mt6359_rt1019_rt5682_dev_probe

The device_node pointer is returned by of_parse_phandle() with refcount incremented. We should use of_node_put() on it when done.

This function only calls of_node_put() in the regular path. And it will cause refcount leak in error path.

Affected products

4
  • Linux/Kernelllm-create3 versions
    (expand)+ 2 more
    • (no CPE)
    • (no CPE)range: 5.17
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=5.17,<5.17.2
  • osv-coords
    Range: >= 5.17.0, < 5.17.2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.