CVE-2022-49487
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
mtd: rawnand: intel: fix possible null-ptr-deref in ebu_nand_probe()
It will cause null-ptr-deref when using 'res', if platform_get_resource() returns NULL, so move using 'res' after devm_ioremap_resource() that will check it to avoid null-ptr-deref.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 0b1039f016e8a37c779a4aee362cb2100ebb1cfd < e5b1e419cdb6dd8709eb05ed34039a3ded8e6003 | affected |
| Linux | Linux | 0b1039f016e8a37c779a4aee362cb2100ebb1cfd < daa5166450b447415aeeaac0199e445bae7bd0f2 | affected |
| Linux | Linux | 0b1039f016e8a37c779a4aee362cb2100ebb1cfd < f8e262eb7575a4a2412f30f7a1b293875aceba80 | affected |
| Linux | Linux | 0b1039f016e8a37c779a4aee362cb2100ebb1cfd < ddf66aefd685fd46500b9917333e1b1e118276dc | affected |
| Linux | Linux | 5.11 | affected |
| Linux | Linux | 0 < 5.11 | unaffected |
| Linux | Linux | 5.15.46 <= 5.15.* | unaffected |
| Linux | Linux | 5.17.14 <= 5.17.* | unaffected |
| Linux | Linux | 5.18.3 <= 5.18.* | unaffected |
| Linux | Linux | 5.19 <= * | unaffected |
Weaknesses
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://git.kernel.org/stable/c/e5b1e419cdb6dd8709eb05ed34039a3ded8e6003
- https://git.kernel.org/stable/c/daa5166450b447415aeeaac0199e445bae7bd0f2
- https://git.kernel.org/stable/c/f8e262eb7575a4a2412f30f7a1b293875aceba80
- https://git.kernel.org/stable/c/ddf66aefd685fd46500b9917333e1b1e118276dc
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.