CVE-2022-49323

In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu: fix possible null-ptr-deref in arm_smmu_device_probe() It will cause null-ptr-deref when using 'res', if platform_get_resource() returns NULL, so move using 'res' after devm_ioremap_resource() that will check it to avoid null-ptr-deref. And use devm_platform_get_and_ioremap_resource() to simplify code.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

13 Mar 2025, 22:02

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: iommu/arm-smmu: se corrige la posible eliminación de referencias PTR nulas en arm_smmu_device_probe(). Esto provocará una eliminación de referencias PTR nulas al usar 'res', si platform_get_resource() devuelve NULL, por lo que se pasa a usar 'res' después de devm_ioremap_resource() que lo comprobará para evitar la eliminación de referencias PTR nulas. Y se usa devm_platform_get_and_ioremap_resource() para simplificar el código.
References () https://git.kernel.org/stable/c/3660db29b0305f9a1d95979c7af0f5db6ea99f5d - () https://git.kernel.org/stable/c/3660db29b0305f9a1d95979c7af0f5db6ea99f5d - Patch
References () https://git.kernel.org/stable/c/449fc4561762ad9ad85362d5f01f0d0df397457a - () https://git.kernel.org/stable/c/449fc4561762ad9ad85362d5f01f0d0df397457a - Patch
References () https://git.kernel.org/stable/c/80776a71340f57d6a4952635fc89f0342072f3ca - () https://git.kernel.org/stable/c/80776a71340f57d6a4952635fc89f0342072f3ca - Patch
References () https://git.kernel.org/stable/c/98dd53a92825747395649f54d23512a13c3ed471 - () https://git.kernel.org/stable/c/98dd53a92825747395649f54d23512a13c3ed471 - Patch
References () https://git.kernel.org/stable/c/d9ed8af1dee37f181096631fb03729ece98ba816 - () https://git.kernel.org/stable/c/d9ed8af1dee37f181096631fb03729ece98ba816 - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-476
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux linux Kernel
Linux

26 Feb 2025, 07:01

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-26 07:01

Updated : 2025-03-13 22:02


NVD link : CVE-2022-49323

Mitre link : CVE-2022-49323

CVE.ORG link : CVE-2022-49323


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference