5.5

CVE-2022-49005

In the Linux kernel, the following vulnerability has been resolved:

ASoC: ops: Fix bounds check for _sx controls

For _sx controls the semantics of the max field is not the usual one, max
is the number of steps rather than the maximum value. This means that our
check in snd_soc_put_volsw_sx() needs to just check against the maximum
value.
Data is provided by the National Vulnerability Database (NVD)
LinuxLinux Kernel Version >= 4.9.300 < 4.9.335
LinuxLinux Kernel Version >= 4.14.265 < 4.14.301
LinuxLinux Kernel Version >= 4.19.228 < 4.19.268
LinuxLinux Kernel Version >= 5.4.178 < 5.4.226
LinuxLinux Kernel Version >= 5.10.99 < 5.10.158
LinuxLinux Kernel Version >= 5.15.22 < 5.15.82
LinuxLinux Kernel Version >= 5.16.8 < 5.17
LinuxLinux Kernel Version >= 5.17 < 6.0.12
LinuxLinux Kernel Version6.1 Updaterc1
LinuxLinux Kernel Version6.1 Updaterc2
LinuxLinux Kernel Version6.1 Updaterc3
LinuxLinux Kernel Version6.1 Updaterc4
LinuxLinux Kernel Version6.1 Updaterc5
LinuxLinux Kernel Version6.1 Updaterc6
LinuxLinux Kernel Version6.1 Updaterc7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.086
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H