5.5
CVE-2022-48843
- EPSS 0.02%
- Published 16.07.2024 13:15:11
- Last modified 21.11.2024 07:34:11
- Source 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Open
In the Linux kernel, the following vulnerability has been resolved: drm/vrr: Set VRR capable prop only if it is attached to connector VRR capable property is not attached by default to the connector It is attached only if VRR is supported. So if the driver tries to call drm core set prop function without it being attached that causes NULL dereference.
Data is provided by the National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version < 5.4.186
Linux ≫ Linux Kernel Version >= 5.5 < 5.10.107
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.30
Linux ≫ Linux Kernel Version >= 5.16 < 5.16.16
| Type | Source | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.041 |
| Source | Base Score | Exploit Score | Impact Score | Vector string |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-476 NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.