CVE-2022-49035

In the Linux kernel, the following vulnerability has been resolved: media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE I expect that the hardware will have limited this to 16, but just in case it hasn't, check for this corner case.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.1:rc1:*:*:*:*:*:*

History

09 Jan 2025, 20:22

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: media: s5p_cec: limit msg.len a CEC_MAX_MSG_SIZE Espero que el hardware haya limitado esto a 16, pero en caso de que no sea así, verifique este caso especial.
CWE CWE-770
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.1:rc1:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/1609231f86760c1f6a429de7913dd795b9faa08c - () https://git.kernel.org/stable/c/1609231f86760c1f6a429de7913dd795b9faa08c - Patch
References () https://git.kernel.org/stable/c/2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4 - () https://git.kernel.org/stable/c/2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4 - Patch
References () https://git.kernel.org/stable/c/4a449430ecfb199b99ba58af63c467eb53500b39 - () https://git.kernel.org/stable/c/4a449430ecfb199b99ba58af63c467eb53500b39 - Patch
References () https://git.kernel.org/stable/c/7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a - () https://git.kernel.org/stable/c/7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a - Patch
References () https://git.kernel.org/stable/c/93f65ce036863893c164ca410938e0968964b26c - () https://git.kernel.org/stable/c/93f65ce036863893c164ca410938e0968964b26c - Patch
References () https://git.kernel.org/stable/c/a2728bf9b6c65e46468c763e3dab7e04839d4e11 - () https://git.kernel.org/stable/c/a2728bf9b6c65e46468c763e3dab7e04839d4e11 - Patch
References () https://git.kernel.org/stable/c/cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd - () https://git.kernel.org/stable/c/cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd - Patch
References () https://git.kernel.org/stable/c/fc0f76dd5f116fa9291327024dda392f8b4e849c - () https://git.kernel.org/stable/c/fc0f76dd5f116fa9291327024dda392f8b4e849c - Patch
First Time Linux linux Kernel
Linux

02 Jan 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-02 15:15

Updated : 2025-01-09 20:22


NVD link : CVE-2022-49035

Mitre link : CVE-2022-49035

CVE.ORG link : CVE-2022-49035


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-770

Allocation of Resources Without Limits or Throttling