CVE-2022-49365

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Off by one in dm_dmub_outbox1_low_irq()

The > ARRAY_SIZE() should be >= ARRAY_SIZE() to prevent an out of bounds access.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux734d5ce02cb069cccedc993d8f1dc0ea41cfa3dd < ec9ec3bc08b18c5b1b2feafd306ea7c348013898affected
LinuxLinuxe27c41d5b0681c597ac1894f4e02cf626e062250 < b0808b7a04157b3f56e919f27023fec37a075fadaffected
LinuxLinuxe27c41d5b0681c597ac1894f4e02cf626e062250 < 607c5cd1a08e196d9f2bd3b25a8083ed27ad7cebaffected
LinuxLinuxe27c41d5b0681c597ac1894f4e02cf626e062250 < a35faec3db0e13aac8ea720bc1a3503081dd5a3daffected
LinuxLinux5.16affected
LinuxLinux0 < 5.16unaffected
LinuxLinux5.17.15 <= 5.17.*unaffected
LinuxLinux5.18.4 <= 5.18.*unaffected
LinuxLinux5.19 <= *unaffected

Weaknesses

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References