CVE-2022-48761
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2022-48761 affects the Linux kernel's USB XHCI platform driver. The vulnerability was discovered when a crash occurred on the i.MX8QM platform during system suspend with remote wakeup enabled. The issue was disclosed on June 20, 2024 (NVD).

Technical details

The vulnerability occurs in the xhci-plat driver's suspend functionality. The issue arises when the system attempts to suspend while the USB controller is in runtime suspended state. The crash happens because xhcisuspend tries to access registers through xhcidisablehubport_wake after the clock has been gated by runtime suspend. This was previously masked by the power domain driver's behavior of calling runtime resume, but became exposed after changes to the power domain handling (Kernel Commit).

Impact

When exploited, this vulnerability can cause a system crash (synchronous external abort) on affected platforms when attempting to suspend the system with USB remote wake enabled. This primarily affects systems using the XHCI platform driver with power management features (NVD).

Mitigation and workarounds

The issue has been fixed by adding runtime resume calls before suspend operations in the xhci-plat driver. The fix ensures the clock is enabled before accessing registers during suspend operations. The patch has been merged into the Linux kernel (Kernel Commit).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40205HIGH7.8
  • Linux KernelLinux Kernel
  • linux-gcp-5.4
NoYesNov 12, 2025
CVE-2025-40211HIGH7.1
  • Linux KernelLinux Kernel
  • linux-gcp-6.8
NoYesNov 21, 2025
CVE-2025-40206MEDIUM5.5
  • Linux KernelLinux Kernel
  • kernel-zfcpdump-modules-extra
NoYesNov 12, 2025
CVE-2025-40210MEDIUM5.1
  • Linux KernelLinux Kernel
  • kernel-rt-64k-modules
NoYesNov 21, 2025
CVE-2025-40212N/AN/A
  • Linux KernelLinux Kernel
  • linux-azure-6.14
NoYesNov 24, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management