CVE-2022-49437

Source
https://cve.org/CVERecord?id=CVE-2022-49437
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49437.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49437
Downstream
Related
Published
2025-02-26T02:12:52.524Z
Modified
2026-04-11T12:44:03.592563Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
powerpc/xive: Fix refcount leak in xive_spapr_init
Details

In the Linux kernel, the following vulnerability has been resolved:

powerpc/xive: Fix refcount leak in xivespaprinit

offindcompatiblenode() returns a node pointer with refcount incremented, we should use ofnodeput() on it when done. Add missing ofnode_put() to avoid refcount leak.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49437.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
eac1e731b59ee3b5f5e641a7765c7ed41ed26226
Fixed
65f11ccdd746e0e7f0b469cc989ba43d4f30ecfe
Fixed
6e806485d851986a2445267608f27cb4ba2ed774
Fixed
cc62dde2a5f4ba14016fd9caec76f08d388f4b9c
Fixed
1d1fb9618bdd5a5fbf9a9eb75133da301d33721c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49437.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.14.0
Fixed
5.15.46
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.17.14
Type
ECOSYSTEM
Events
Introduced
5.18.0
Fixed
5.18.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49437.json"