-
CVE-2022-50814
- EPSS 0.04%
- Veröffentlicht 30.12.2025 12:08:30
- Zuletzt bearbeitet 15.04.2026 00:35:42
- Quelle 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Unerledigt
crypto: hisilicon/zip - fix mismatch in get/set sgl_sge_nr
In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/zip - fix mismatch in get/set sgl_sge_nr KASAN reported this Bug: [17619.659757] BUG: KASAN: global-out-of-bounds in param_get_int+0x34/0x60 [17619.673193] Read of size 4 at addr fffff01332d7ed00 by task read_all/1507958 ... [17619.698934] The buggy address belongs to the variable: [17619.708371] sgl_sge_nr+0x0/0xffffffffffffa300 [hisi_zip] There is a mismatch in hisi_zip when get/set the variable sgl_sge_nr. The type of sgl_sge_nr is u16, and get/set sgl_sge_nr by param_get/set_int. Replacing param_get/set_int to param_get/set_ushort can fix this bug.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
f081fda293ffba54216a7dab66faba7275475006
Version <
d88b88514ef28515ccfa1f1787c2aedef75a79dd
Status
affected
Version
f081fda293ffba54216a7dab66faba7275475006
Version <
272093471305261c4e07a2fc97c2d1e53cd56819
Status
affected
Version
f081fda293ffba54216a7dab66faba7275475006
Version <
f8a983d6e01b198320d310cb1326364d7d973b2a
Status
affected
Version
f081fda293ffba54216a7dab66faba7275475006
Version <
5eaebd19fbb0e26e73a34f55d3b1dc310df0eb15
Status
affected
Version
f081fda293ffba54216a7dab66faba7275475006
Version <
d74f9340097a881869c4c22ca376654cc2516ecc
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
5.5
Status
affected
Version
0
Version <
5.5
Status
unaffected
Version <=
5.10.*
Version
5.10.150
Status
unaffected
Version <=
5.15.*
Version
5.15.75
Status
unaffected
Version <=
5.19.*
Version
5.19.17
Status
unaffected
Version <=
6.0.*
Version
6.0.3
Status
unaffected
Version <=
*
Version
6.1
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.101 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|