CVE-2022-48663: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: gpio: mockup: fix NULL pointer dereference when removing debugfs We now remove the device's debugfs entries when unbinding the driver. This now causes a NULL-pointer dereference on module exit because the platform devices are unregistered *after* the global debugfs directory has been recursively removed. Fix it by unregistering the devices first.

Affected products

  • Linux Linux Kernel: from 5.10.144, before 5.10.146 (fixed in 5.10.146); from 5.15.69, before 5.15.71 (fixed in 5.15.71); from 5.19.10, before 5.19.12 (fixed in 5.19.12)

Published 2024-04-28. Last modified 2026-06-17.