CVE-2022-49718

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 26, 2025
Updated: Mar 7, 2025

Summary

CVE-2022-49718 is a vulnerability affecting the Linux kernel where a refcount leak issue was identified in the 'irqchip/apple-aic' component. This vulnerability arises due to the failure to use 'of_node_put()' to decrease the reference count of nodes obtained using 'of_get_child_by_name()'. The consequence of this oversight is a potential refcount leak, which may have security implications if it leads to resource exhaustion or memory corruption. The issue has been rectified in recent kernel releases.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share