Linux Kernel QCOM QMP PHY Reset Controller Leak Vulnerability

Vulnerability

A vulnerability in the Linux kernel's QCOM QMP PHY implementation has been addressed. The issue involved a leak of the lane reset controller during probe errors, particularly in cases of probe deferral. The vulnerability arose because the reset controller is defined in the device tree under 'lane' child nodes, preventing the direct use of the 'devm_reset_control_get_exclusive()' function.

Impact

The vulnerability could lead to improper handling of reset controllers, potentially causing resource leaks or incorrect device initialization.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.