CVE-2022-50371: led: qcom-lpg: Fix sleeping in atomic

Published Sep 17, 2025
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

led: qcom-lpg: Fix sleeping in atomic

lpgbrighnessset() function can sleep, while led's brightnessset() callback must be non-blocking. Change LPG driver to use brightnesssetblocking() instead.

BUG: sleeping function called from invalid context at kernel/locking/mutex.c:580 inatomic(): 1, irqsdisabled(): 0, nonblock: 0, pid: 0, name: swapper/0 preemptcount: 101, expected: 0 INFO: lockdep is turned off. CPU: 0 PID: 0 Comm: swapper/0 Tainted: G W 6.1.0-rc1-00014-gbe99b089c6fc-dirty #85 Hardware name: Qualcomm Technologies, Inc. DB820c (DT) Call trace: dumpbacktrace.part.0+0xe4/0xf0 showstack+0x18/0x40 dumpstacklvl+0x88/0xb4 dumpstack+0x18/0x34 mightresched+0x170/0x254 mightsleep+0x48/0x9c mutexlock+0x4c/0x400 mutexlocknested+0x2c/0x40 lpgbrightnesssingleset+0x40/0x90 ledsetbrightnessnosleep+0x34/0x60 ledheartbeatfunction+0x80/0x170 calltimerfn+0xb8/0x340 runtimers.part.0+0x20c/0x254 runtimersoftirq+0x3c/0x7c stext+0x14c/0x578 dosoftirq+0x10/0x20 callonirqstack+0x2c/0x5c dosoftirqownstack+0x1c/0x30 irqexitrcu+0x164/0x170 irqexitrcu+0x10/0x40 el1interrupt+0x38/0x50 el1h64irqhandler+0x18/0x2c el1h64irq+0x64/0x68 cpuidleenterstate+0xc8/0x380 cpuidleenter+0x38/0x50 doidle+0x244/0x2d0 cpustartupentry+0x24/0x30 restinit+0x128/0x1a0 archpostacpisubsysinit+0x0/0x18 startkernel+0x6f4/0x734 primaryswitched+0xbc/0xc4

Affected Software

3 affected components
Linux Kernel
Linux Linux kernel>=5.19<6.0.16
Linux Linux kernel>=6.1<6.1.2

Event History

Sep 17, 2025
CVE Published
via MITRE·02:56 PM
Data Sourced
via MITRE·02:56 PM
Description
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2022-50371?

CVE-2022-50371 is classified as a medium severity vulnerability due to its potential impact on system stability.

2

How do I fix CVE-2022-50371?

To fix CVE-2022-50371, update the Linux kernel to a version where the LPG driver uses brightness_set_blocking() instead.

3

What is the impact of CVE-2022-50371?

The impact of CVE-2022-50371 includes potential system instability from the qcom-lpg driver sleeping in atomic context.

4

Which versions of the Linux kernel are affected by CVE-2022-50371?

CVE-2022-50371 affects various versions of the Linux kernel that utilize the qcom-lpg LED driver before the fix was applied.

5

Can CVE-2022-50371 be exploited remotely?

CVE-2022-50371 is not considered remotely exploitable as it requires local access to the affected system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203