vulnerability
Ubuntu: (CVE-2022-49525): linux vulnerability
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:L/AC:L/Au:S/C:N/I:N/A:C) | Feb 26, 2025 | Mar 3, 2025 | Jun 10, 2025 |
Description
In the Linux kernel, the following vulnerability has been resolved:
media: cx25821: Fix the warning when removing the module
When removing the module, we will get the following warning:
[ 14.746697] remove_proc_entry: removing non-empty directory 'irq/21', leaking at least 'cx25821[1]'
[ 14.747449] WARNING: CPU: 4 PID: 368 at fs/proc/generic.c:717 remove_proc_entry+0x389/0x3f0
[ 14.751611] RIP: 0010:remove_proc_entry+0x389/0x3f0
[ 14.759589] Call Trace:
[ 14.759792]
[ 14.759975] unregister_irq_proc+0x14c/0x170
[ 14.760340] irq_free_descs+0x94/0xe0
[ 14.760640] mp_unmap_irq+0xb6/0x100
[ 14.760937] acpi_unregister_gsi_ioapic+0x27/0x40
[ 14.761334] acpi_pci_irq_disable+0x1d3/0x320
[ 14.761688] pci_disable_device+0x1ad/0x380
[ 14.762027] ? _raw_spin_unlock_irqrestore+0x2d/0x60
[ 14.762442] ? cx25821_shutdown+0x20/0x9f0 [cx25821]
[ 14.762848] cx25821_finidev+0x48/0xc0 [cx25821]
[ 14.763242] pci_device_remove+0x92/0x240
Fix this by freeing the irq before call pci_disable_device().
Solution(s)
References
- CVE-2022-49525
- https://attackerkb.com/topics/CVE-2022-49525
- URL-https://git.kernel.org/linus/2203436a4d24302871617373a7eb21bc17e38762
- URL-https://git.kernel.org/stable/c/005fd553f5f10fe8618d92f94ad10f9051eac331
- URL-https://git.kernel.org/stable/c/1f0fc1dfb5fdd456657519a97fab83691b96c6a0
- URL-https://git.kernel.org/stable/c/2203436a4d24302871617373a7eb21bc17e38762
- URL-https://git.kernel.org/stable/c/222292930c8ecc3516e03ec1f9fa8448be7ff496
- URL-https://git.kernel.org/stable/c/258639bc55a586ee6df92d89786ccf1c71546d70
- URL-https://git.kernel.org/stable/c/3f94169affa33c9db4a439d88f09cb2ed3a33332
- URL-https://git.kernel.org/stable/c/4d6295b6d986476232332fffd08575b185f90d81
- URL-https://git.kernel.org/stable/c/5beb85ff7d005ddb7bf604a4f2dc76f01b84b318
- URL-https://git.kernel.org/stable/c/9d92291698e5cc35a2b8a1106a01ddd7d60ade2d
- URL-https://www.cve.org/CVERecord?id=CVE-2022-49525

Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.