CVE-2022-49165

In the Linux kernel, the following vulnerability has been resolved: media: imx-jpeg: Prevent decoding NV12M jpegs into single-planar buffers If the application queues an NV12M jpeg as output buffer, but then queues a single planar capture buffer, the kernel will crash with "Unable to handle kernel NULL pointer dereference" in mxc_jpeg_addrs, prevent this by finishing the job with error.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

23 Sep 2025, 14:20

Type Values Removed Values Added
CWE CWE-476
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: media: imx-jpeg: Evitar la decodificación de jpeg NV12M en buffers de un solo planar. Si la aplicación pone en cola un jpeg NV12M como buffer de salida, pero luego pone en cola un solo buffer de captura de un planar, el kernel se bloqueará con el mensaje "No se puede manejar la desreferencia del puntero NULL del kernel" en mxc_jpeg_addrs. Para evitarlo, finalice el trabajo con un error.
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/417591a766b3c040c346044541ff949c0b2bb7b2 - () https://git.kernel.org/stable/c/417591a766b3c040c346044541ff949c0b2bb7b2 - Patch
References () https://git.kernel.org/stable/c/4eb591c47c82a6a6ad293ed108c3cb77115fbc25 - () https://git.kernel.org/stable/c/4eb591c47c82a6a6ad293ed108c3cb77115fbc25 - Patch
References () https://git.kernel.org/stable/c/8d075ede7d24f19dc817c5bd517a53f0524f9031 - () https://git.kernel.org/stable/c/8d075ede7d24f19dc817c5bd517a53f0524f9031 - Patch
References () https://git.kernel.org/stable/c/eff76b180751e5e55c872d17755680c3b83ba9ab - () https://git.kernel.org/stable/c/eff76b180751e5e55c872d17755680c3b83ba9ab - Patch

26 Feb 2025, 07:00

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-26 07:00

Updated : 2025-09-23 14:20


NVD link : CVE-2022-49165

Mitre link : CVE-2022-49165

CVE.ORG link : CVE-2022-49165


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference