-

CVE-2022-50368

In the Linux kernel, the following vulnerability has been resolved:

drm/msm/dsi: fix memory corruption with too many bridges

Add the missing sanity check on the bridge counter to avoid corrupting
data beyond the fixed-sized bridge array in case there are ever more
than eight bridges.

Patchwork: https://patchwork.freedesktop.org/patch/502668/

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < 4e5587cddb334f7a5bb1c49ea8bbfc966fafe1b8
Version a689554ba6ed81cf606c16539f6ffc2a1dcdaf8e
Status affected
Version < f649ed0e1b7a1545f8e27267d3c468b3cb222ece
Version a689554ba6ed81cf606c16539f6ffc2a1dcdaf8e
Status affected
Version < 21c4679af01f1027cb559330c2e7d410089b2b36
Version a689554ba6ed81cf606c16539f6ffc2a1dcdaf8e
Status affected
Version < 9f035d1fb30648fe70ee01627eb131c56d699b35
Version a689554ba6ed81cf606c16539f6ffc2a1dcdaf8e
Status affected
Version < e83b354890a3c1d5256162f87a6cc38c47ae7f20
Version a689554ba6ed81cf606c16539f6ffc2a1dcdaf8e
Status affected
Version < 2e786eb2f9cebb07e317226b60054df510b60c65
Version a689554ba6ed81cf606c16539f6ffc2a1dcdaf8e
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version 4.1
Status affected
Version < 4.1
Version 0
Status unaffected
Version <= 4.19.*
Version 4.19.264
Status unaffected
Version <= 5.4.*
Version 5.4.223
Status unaffected
Version <= 5.10.*
Version 5.10.153
Status unaffected
Version <= 5.15.*
Version 5.15.77
Status unaffected
Version <= 6.0.*
Version 6.0.7
Status unaffected
Version <= *
Version 6.1
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.078
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string