CVE-2022-49213
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2022-49213 is a vulnerability in the Linux kernel affecting the ath10k driver's error handling in ath10ksetupmsaresources function. The vulnerability was disclosed on February 26, 2025. The issue occurs because the devicenode pointer returned by ofparsephandle() has its refcount incremented, but the function only calls ofnodeput() in the regular path, causing a potential reference count leak in the error path (Kernel Commit).

Technical details

The vulnerability exists in the ath10k driver's snoc.c file, specifically in the ath10ksetupmsaresources function. The issue stems from improper reference counting where ofnodeput() is only called in the regular execution path but not in the error path, leading to a potential reference count leak. This was fixed by moving the ofnode_put() call before the error check to ensure proper cleanup in all execution paths (Kernel Commit).

Impact

The vulnerability could result in a reference count leak in the Linux kernel's memory management system. While the direct impact is a memory leak, this could potentially lead to resource exhaustion over time (NVD).

Mitigation and workarounds

The issue has been fixed in the Linux kernel through a patch that properly handles the reference counting by moving the ofnodeput() call before the error check. Users should update their systems to a patched kernel version. Various Linux distributions have incorporated the fix, including Ubuntu which has marked it as 'fixed' in newer releases (Ubuntu Security).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40258HIGH7
  • Linux KernelLinux Kernel
  • kernel-zfcpdump-devel-matched
NoNoDec 04, 2025
CVE-2025-40259MEDIUM6.2
  • Linux KernelLinux Kernel
  • kernel-64k-devel
NoNoDec 04, 2025
CVE-2025-40264MEDIUM5.5
  • Linux KernelLinux Kernel
  • kernel-rt-64k-debug-kvm
NoNoDec 04, 2025
CVE-2025-40254MEDIUM5.5
  • Linux KernelLinux Kernel
  • kernel-modules-partner
NoNoDec 04, 2025
CVE-2025-40253MEDIUM5.5
  • Linux KernelLinux Kernel
  • python3-perf
NoNoDec 04, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management