In the Linux kernel, the following vulnerability has been resolved:
gpio: mockup: fix NULL pointer dereference when removing debugfs
We now remove the device's debugfs entries when unbinding the driver. This now causes a NULL-pointer dereference on module exit because the platform devices are unregistered after the global debugfs directory has been recursively removed. Fix it by unregistering the devices first.
[
{
"id": "CVE-2022-48663-27b33d3a",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "115700283430038341064725186830068067749",
"length": 121.0
},
"target": {
"file": "drivers/gpio/gpio-mockup.c",
"function": "gpio_mockup_exit"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@bdea98b98f844bd8a983ca880893e509a8b4162f"
},
{
"id": "CVE-2022-48663-7d73d1f0",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"line_hashes": [
"185841187501949401997775899187506326351",
"23935581778847790099988622745562284335",
"44123819939015590193485569367608431769",
"167896293561976827197421178375152390476",
"190043442304333120768486625045328083462",
"285310881840412328903987704826468322139",
"6029197256011597778915650067840054996"
],
"threshold": 0.9
},
"target": {
"file": "drivers/gpio/gpio-mockup.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@bdea98b98f844bd8a983ca880893e509a8b4162f"
},
{
"id": "CVE-2022-48663-c5505d93",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"line_hashes": [
"185841187501949401997775899187506326351",
"23935581778847790099988622745562284335",
"44123819939015590193485569367608431769",
"167896293561976827197421178375152390476",
"190043442304333120768486625045328083462",
"285310881840412328903987704826468322139",
"6029197256011597778915650067840054996"
],
"threshold": 0.9
},
"target": {
"file": "drivers/gpio/gpio-mockup.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@18352095a0d581f6aeb1e9fc9d68cc0152cd64b4"
},
{
"id": "CVE-2022-48663-d9e2ae52",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "115700283430038341064725186830068067749",
"length": 121.0
},
"target": {
"file": "drivers/gpio/gpio-mockup.c",
"function": "gpio_mockup_exit"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@18352095a0d581f6aeb1e9fc9d68cc0152cd64b4"
}
]