CVE-2022-49495
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
drm/msm/hdmi: check return value after calling platform_get_resource_byname()
It will cause null-ptr-deref if platform_get_resource_byname() returns NULL, we need check the return value.
Patchwork: https://patchwork.freedesktop.org/patch/482992/
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < 9cb1ee33efccb8b107ee04b7b3441820de3fd2da | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < c1bfacf0daf25a5fc7d667399d6ff2dffda84cd8 | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < 0978fcce91b90b561b8c82e7c492ba9fc8440eef | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < 2b3ed7547b1a052209da6c4ab886ffe0eed88c42 | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < d9cb951d11a4ace4de5c50b1178ad211de17079e | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < 4cd66a8016b872a153bf892fe4258cbc0dacf5b1 | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < 6369dda4a2209142ab819f01d3d2076d81e3ebdd | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < 9f5495a5c51c1d11c6ffc13aa2befffec0c2651a | affected |
| Linux | Linux | c6a57a50ad562a2e6fc6ac3218b710caea73a58b < a36e506711548df923ceb7ec9f6001375be799a5 | affected |
| Linux | Linux | 4.3 | affected |
| Linux | Linux | 0 < 4.3 | unaffected |
| Linux | Linux | 4.9.318 <= 4.9.* | unaffected |
| Linux | Linux | 4.14.283 <= 4.14.* | unaffected |
| Linux | Linux | 4.19.247 <= 4.19.* | unaffected |
| Linux | Linux | 5.4.198 <= 5.4.* | unaffected |
| Linux | Linux | 5.10.121 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.46 <= 5.15.* | unaffected |
| Linux | Linux | 5.17.14 <= 5.17.* | unaffected |
| Linux | Linux | 5.18.3 <= 5.18.* | unaffected |
| Linux | Linux | 5.19 <= * | unaffected |
Weaknesses
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://git.kernel.org/stable/c/9cb1ee33efccb8b107ee04b7b3441820de3fd2da
- https://git.kernel.org/stable/c/c1bfacf0daf25a5fc7d667399d6ff2dffda84cd8
- https://git.kernel.org/stable/c/0978fcce91b90b561b8c82e7c492ba9fc8440eef
- https://git.kernel.org/stable/c/2b3ed7547b1a052209da6c4ab886ffe0eed88c42
- https://git.kernel.org/stable/c/d9cb951d11a4ace4de5c50b1178ad211de17079e
- https://git.kernel.org/stable/c/4cd66a8016b872a153bf892fe4258cbc0dacf5b1
- https://git.kernel.org/stable/c/6369dda4a2209142ab819f01d3d2076d81e3ebdd
- https://git.kernel.org/stable/c/9f5495a5c51c1d11c6ffc13aa2befffec0c2651a
- https://git.kernel.org/stable/c/a36e506711548df923ceb7ec9f6001375be799a5
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.