CVE-2022-48663: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: gpio: mockup: fix NULL pointer dereference when removing debugfs We now remove the device's debugfs entries when unbinding the driver. This now causes a NULL-pointer dereference on module exit because the platform devices are unregistered *after* the global debugfs directory has been recursively removed. Fix it by unregistering the devices first.
Affected products
- Linux Linux Kernel: from 5.10.144, before 5.10.146 (fixed in 5.10.146); from 5.15.69, before 5.15.71 (fixed in 5.15.71); from 5.19.10, before 5.19.12 (fixed in 5.19.12)
Published 2024-04-28. Last modified 2026-06-17.