CVE-2022-49494

In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: cadence: fix possible null-ptr-deref in cadence_nand_dt_probe() It will cause null-ptr-deref when using 'res', if platform_get_resource() returns NULL, so move using 'res' after devm_ioremap_resource() that will check it to avoid null-ptr-deref. And use devm_platform_get_and_ioremap_resource() to simplify code.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

17 Mar 2025, 16:52

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
First Time Linux linux Kernel
Linux
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: mtd: rawnand: cadence: se corrige un posible null-ptr-deref en cadence_nand_dt_probe(). Provocará un null-ptr-deref al usar 'res', si platform_get_resource() devuelve NULL, así que pase a usar 'res' después de devm_ioremap_resource() que lo comprobará para evitar un null-ptr-deref. Y use devm_platform_get_and_ioremap_resource() para simplificar el código.
CWE CWE-476
References () https://git.kernel.org/stable/c/069af5e27c1b0f7677ef76d8d3102e503ca4f80b - () https://git.kernel.org/stable/c/069af5e27c1b0f7677ef76d8d3102e503ca4f80b - Patch
References () https://git.kernel.org/stable/c/0cfee868b89ffa945f3d535ee5c985cb40c5a0f8 - () https://git.kernel.org/stable/c/0cfee868b89ffa945f3d535ee5c985cb40c5a0f8 - Patch
References () https://git.kernel.org/stable/c/13b60d3dc84b47307669edb66b633b18466014b4 - () https://git.kernel.org/stable/c/13b60d3dc84b47307669edb66b633b18466014b4 - Patch
References () https://git.kernel.org/stable/c/81f1ddffdc22ca5789e33b9d4712914e302090c1 - () https://git.kernel.org/stable/c/81f1ddffdc22ca5789e33b9d4712914e302090c1 - Patch
References () https://git.kernel.org/stable/c/a28ed09dafee20da51eb26452950839633afd824 - () https://git.kernel.org/stable/c/a28ed09dafee20da51eb26452950839633afd824 - Patch

26 Feb 2025, 07:01

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-26 07:01

Updated : 2025-03-17 16:52


NVD link : CVE-2022-49494

Mitre link : CVE-2022-49494

CVE.ORG link : CVE-2022-49494


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference