CVE-2023-22996

In the Linux kernel before 5.17.2, drivers/soc/qcom/qcom_aoss.c does not release an of_find_device_by_node reference after use, e.g., with put_device.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

06 Mar 2023, 16:27

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux
Linux linux Kernel
CWE CWE-772
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
References (MISC) https://github.com/torvalds/linux/commit/4b41a9d0fe3db5f91078a380f62f0572c3ecf2dd - (MISC) https://github.com/torvalds/linux/commit/4b41a9d0fe3db5f91078a380f62f0572c3ecf2dd - Patch
References (MISC) https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.17.2 - (MISC) https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.17.2 - Release Notes

28 Feb 2023, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-28 21:15

Updated : 2023-12-10 14:48


NVD link : CVE-2023-22996

Mitre link : CVE-2023-22996

CVE.ORG link : CVE-2023-22996


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-772

Missing Release of Resource after Effective Lifetime