5.5

CVE-2022-48908

net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe()

In the Linux kernel, the following vulnerability has been resolved:

net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe()

During driver initialization, the pointer of card info, i.e. the
variable 'ci' is required. However, the definition of
'com20020pci_id_table' reveals that this field is empty for some
devices, which will cause null pointer dereference when initializing
these devices.

The following log reveals it:

[    3.973806] KASAN: null-ptr-deref in range [0x0000000000000028-0x000000000000002f]
[    3.973819] RIP: 0010:com20020pci_probe+0x18d/0x13e0 [com20020_pci]
[    3.975181] Call Trace:
[    3.976208]  local_pci_probe+0x13f/0x210
[    3.977248]  pci_device_probe+0x34c/0x6d0
[    3.977255]  ? pci_uevent+0x470/0x470
[    3.978265]  really_probe+0x24c/0x8d0
[    3.978273]  __driver_probe_device+0x1b3/0x280
[    3.979288]  driver_probe_device+0x50/0x370

Fix this by checking whether the 'ci' is a null pointer first.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 3.18 < 4.9.305
Linux ≫ Linux Kernel Version >= 4.10 < 4.14.270
Linux ≫ Linux Kernel Version >= 4.15 < 4.19.233
Linux ≫ Linux Kernel Version >= 4.20 < 5.4.183
Linux ≫ Linux Kernel Version >= 5.5 < 5.10.104
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.27
Linux ≫ Linux Kernel Version >= 5.16 < 5.16.13
Linux ≫ Linux Kernel Version 5.17 Update rc1
Linux ≫ Linux Kernel Version 5.17 Update rc2
Linux ≫ Linux Kernel Version 5.17 Update rc3
Linux ≫ Linux Kernel Version 5.17 Update rc4
Linux ≫ Linux Kernel Version 5.17 Update rc5
Linux ≫ Linux Kernel Version 5.17 Update rc6
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.111
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CISA-ADP 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

https://git.kernel.org/stable/c/5f394102ee27dbf051a4e283390cd8d1759dacea
Patch
https://git.kernel.org/stable/c/8e3bc7c5bbf87e86e9cd652ca2a9166942d86206
Patch
https://git.kernel.org/stable/c/b1ee6b9340a38bdb9e5c90f0eac5b22b122c3049
Patch
https://git.kernel.org/stable/c/b838add93e1dd98210482dc433768daaf752bdef
Patch
https://git.kernel.org/stable/c/bd6f1fd5d33dfe5d1b4f2502d3694a7cc13f166d
Patch
https://git.kernel.org/stable/c/ca0bdff4249a644f2ca7a49d410d95b8dacf1f72
Patch
https://git.kernel.org/stable/c/e50c589678e50f8d574612e473ca60ef45190896
Patch
https://git.kernel.org/stable/c/ea372aab54903310756217d81610901a8e66cb7d
Patch