Home

Description

In the Linux kernel, the following vulnerability has been resolved: media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE I expect that the hardware will have limited this to 16, but just in case it hasn't, check for this corner case.

PUBLISHED Reserved 2024-08-22 | Published 2025-01-02 | Updated 2025-10-29 | Assigner Linux

Product status

Default status
unaffected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before 7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before fc0f76dd5f116fa9291327024dda392f8b4e849c
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before a2728bf9b6c65e46468c763e3dab7e04839d4e11
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before 4a449430ecfb199b99ba58af63c467eb53500b39
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before 1609231f86760c1f6a429de7913dd795b9faa08c
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before 2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4
affected

1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b (git) before 93f65ce036863893c164ca410938e0968964b26c
affected

Default status
affected

4.8
affected

Any version before 4.8
unaffected

4.9.333 (semver)
unaffected

4.14.299 (semver)
unaffected

4.19.265 (semver)
unaffected

5.4.224 (semver)
unaffected

5.10.154 (semver)
unaffected

5.15.78 (semver)
unaffected

6.0.8 (semver)
unaffected

6.1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a

git.kernel.org/...c/fc0f76dd5f116fa9291327024dda392f8b4e849c

git.kernel.org/...c/a2728bf9b6c65e46468c763e3dab7e04839d4e11

git.kernel.org/...c/4a449430ecfb199b99ba58af63c467eb53500b39

git.kernel.org/...c/1609231f86760c1f6a429de7913dd795b9faa08c

git.kernel.org/...c/cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd

git.kernel.org/...c/2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4

git.kernel.org/...c/93f65ce036863893c164ca410938e0968964b26c

cve.org (CVE-2022-49035)

nvd.nist.gov (CVE-2022-49035)

Download JSON