{"schema_version":"1.9.0","id":"CVE-2022-50576","published":"2025-10-22T13:23:30.250Z","modified":"2026-08-12T03:51:41.002129892Z","related":["SUSE-SU-2025:4111-1","SUSE-SU-2025:4139-1","SUSE-SU-2025:4149-1","SUSE-SU-2025:4320-1"],"summary":"serial: pch: Fix PCI device refcount leak in pch_request_dma()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nserial: pch: Fix PCI device refcount leak in pch_request_dma()\n\nAs comment of pci_get_slot() says, it returns a pci_device with its\nrefcount increased. The caller must decrement the reference count by\ncalling pci_dev_put().\n\nSince 'dma_dev' is only used to filter the channel in filter(), we can\ncall pci_dev_put() before exiting from pch_request_dma(). Add the\nmissing pci_dev_put() for the normal and error path.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"3c6a483275f47a2ef7119309ad3d791c10cf30da"},{"fixed":"90ff030ca10b69feeebda1427550ebf9ed2ad868"},{"fixed":"56e5a7c5ee3f0dc8978b5df2b1a98a1b060c5e2a"},{"fixed":"dfd15c5550b9190d5b0f9bcacb3e6436322f3854"},{"fixed":"d165388227aa7e46a9751b90bae6337b5335cdbb"},{"fixed":"07f4ca68b0f6bf84b6b391c14b59fd179fcde9c5"},{"fixed":"6f7d82380fbeaed3a940efc33c23f0c4bbd0fc02"},{"fixed":"4f5d28865c665c9064de631a518f9bc8099d9ce4"},{"fixed":"516614a371c26e3334625b4bca19a5362bf658d6"},{"fixed":"8be3a7bf773700534a6e8f87f6ed2ed111254be5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50576.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"2.6.38"},{"fixed":"4.9.337"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.10.0"},{"fixed":"4.14.303"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.15.0"},{"fixed":"4.19.270"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.20.0"},{"fixed":"5.4.229"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.163"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.86"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.0.16"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.1.0"},{"fixed":"6.1.2"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50576.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/07f4ca68b0f6bf84b6b391c14b59fd179fcde9c5"},{"type":"WEB","url":"https://git.kernel.org/stable/c/4f5d28865c665c9064de631a518f9bc8099d9ce4"},{"type":"WEB","url":"https://git.kernel.org/stable/c/516614a371c26e3334625b4bca19a5362bf658d6"},{"type":"WEB","url":"https://git.kernel.org/stable/c/56e5a7c5ee3f0dc8978b5df2b1a98a1b060c5e2a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6f7d82380fbeaed3a940efc33c23f0c4bbd0fc02"},{"type":"WEB","url":"https://git.kernel.org/stable/c/8be3a7bf773700534a6e8f87f6ed2ed111254be5"},{"type":"WEB","url":"https://git.kernel.org/stable/c/90ff030ca10b69feeebda1427550ebf9ed2ad868"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d165388227aa7e46a9751b90bae6337b5335cdbb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dfd15c5550b9190d5b0f9bcacb3e6436322f3854"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50576.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-50576"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50576.json"}}