SB20250620187 - Resource management error in Linux kernel powerpc kernel
Published: June 20, 2025 Updated: June 21, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Resource management error (CVE-ID: CVE-2022-50012)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to resource management error within the early_init_devtree() function in arch/powerpc/kernel/prom.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/4bb1188e2b1ed98fa2b618cc0628ccba63c6c80f
- https://git.kernel.org/stable/c/5e14b04c8459afbeea1eeb74e81af86d7b196a4d
- https://git.kernel.org/stable/c/8992141cb88f1d99fd11580f4423634700a99240
- https://git.kernel.org/stable/c/8f9357313cdcadb0a311b44c29d4eaccc7fa632f
- https://git.kernel.org/stable/c/c4ced9fd10073adc854919976b88ad6004271119
- https://git.kernel.org/stable/c/ca829e05d3d4f728810cc5e4b468d9ebc7745eb3
- https://git.kernel.org/stable/c/dac28dff90849af4200b8269fcdc84cdc12fa46c
- https://git.kernel.org/stable/c/e3c9e9452a8ea12d335b1e59b2c72e1b99c699b8
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.63