net: ethernet: ti: am65-cpsw: Fix PM runtime leakage in am65_cpsw_nuss_ndo_slave_open()
Published Oct 1, 2025
5.5
MEDIUMCVSS 3.1
EPSS 0.15%
Description
Ensure pm_runtime_put() is issued in error path.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 5.7StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<5.7
- Version 6.0.16StatusunaffectedConstraints<=6.0.*
- Version 6.1.2StatusunaffectedConstraints<=6.1.*
- Version 6.2StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
- ≥ 5.7 · < 6.0.16
- ≥ 6.1 · < 6.1.2
No data.
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Fix deferred
Red Hat Enterprise Linux 9
kernel-rt
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The patch fixes a runtime PM reference leak in am65_cpsw_nuss_ndo_slave_open() by adding a pm_runtime_put() in the error path. Without this fix, failed interface activation could leave the device with an extra PM usage count, preventing proper suspend or power-off. Impact is limited to resource leakage and partial DoS on power management. For the CVSS the PR:H because only privileged code can open/close network interfaces and trigger this path.
References (9)
- https://access.redhat.com/security/cve/CVE-2022-50461 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2400728 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-32821 Advisory
- https://git.kernel.org/stable/c/2c14f5cf74c4995eaf284b496481866f012eba19 Patch
- https://git.kernel.org/stable/c/5821504f5073983733465b8bc430049c4343bbd7 Patch
- https://git.kernel.org/stable/c/a8846b3398600a632696b6cf79f8a44a107eb226 Patch
- https://lore.kernel.org/linux-cve-announce/2025100120-CVE-2022-50461-5ee8@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-50461
- https://www.cve.org/CVERecord?id=CVE-2022-50461
Change history (0)
No recorded changes yet.