CVE-2022-49487

In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: intel: fix possible null-ptr-deref in ebu_nand_probe() It will cause null-ptr-deref when using 'res', if platform_get_resource() returns NULL, so move using 'res' after devm_ioremap_resource() that will check it to avoid null-ptr-deref.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

17 Mar 2025, 16:52

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: mtd: rawnand: intel: corrige posible null-ptr-deref en ebu_nand_probe() Provocará null-ptr-deref al usar 'res', si platform_get_resource() devuelve NULL, así que pase a usar 'res' después de devm_ioremap_resource() que lo comprobará para evitar null-ptr-deref.
CWE CWE-476
References () https://git.kernel.org/stable/c/daa5166450b447415aeeaac0199e445bae7bd0f2 - () https://git.kernel.org/stable/c/daa5166450b447415aeeaac0199e445bae7bd0f2 - Patch
References () https://git.kernel.org/stable/c/ddf66aefd685fd46500b9917333e1b1e118276dc - () https://git.kernel.org/stable/c/ddf66aefd685fd46500b9917333e1b1e118276dc - Patch
References () https://git.kernel.org/stable/c/e5b1e419cdb6dd8709eb05ed34039a3ded8e6003 - () https://git.kernel.org/stable/c/e5b1e419cdb6dd8709eb05ed34039a3ded8e6003 - Patch
References () https://git.kernel.org/stable/c/f8e262eb7575a4a2412f30f7a1b293875aceba80 - () https://git.kernel.org/stable/c/f8e262eb7575a4a2412f30f7a1b293875aceba80 - Patch
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

26 Feb 2025, 07:01

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-26 07:01

Updated : 2025-03-17 16:52


NVD link : CVE-2022-49487

Mitre link : CVE-2022-49487

CVE.ORG link : CVE-2022-49487


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference