CVE-2022-48724: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() After commit e3beca48a45b ("irqdomain/treewide: Keep firmware node unconditionally allocated"). For tear down scenario, fn is only freed after fail to allocate ir_domain, though it also should be freed in case dmar_enable_qi returns error. Besides free fn, irq_domain and ir_msi_domain need to be removed as well if intel_setup_irq_remapping fails to enable queued invalidation. Improve the rewinding path by add out_free_ir_domain and out_free_fwnode lables per Baolu's suggestion.

Affected products

  • Linux Linux Kernel: from 4.14.190, before 4.14.265 (fixed in 4.14.265); from 4.19.135, before 4.19.228 (fixed in 4.19.228); from 5.4.54, before 5.4.178 (fixed in 5.4.178); from 5.7.11, before 5.8 (fixed in 5.8); from 5.8, before 5.10.99 (fixed in 5.10.99); from 5.11, before 5.15.22 (fixed in 5.15.22); …

Published 2024-06-20. Last modified 2026-06-17.