We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-49756

phy: usb: sunplus: Fix potential null-ptr-deref in sp_usb_phy_probe()



Description

In the Linux kernel, the following vulnerability has been resolved: phy: usb: sunplus: Fix potential null-ptr-deref in sp_usb_phy_probe() sp_usb_phy_probe() will call platform_get_resource_byname() that may fail and return NULL. devm_ioremap() will use usbphy->moon4_res_mem->start as input, which may causes null-ptr-deref. Check the ret value of platform_get_resource_byname() to avoid the null-ptr-deref.

Reserved 2025-03-27 | Published 2025-03-27 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

99d9ccd97385208b78b3d88e756451f4b70119fc before d838b5c99bcecd593b4710a93fce8fdbf122395b
affected

99d9ccd97385208b78b3d88e756451f4b70119fc before 17eee264ef386ef30a69dd70e36f29893b85c170
affected

Default status
affected

6.1
affected

Any version before 6.1
unaffected

6.1.9
unaffected

6.2
unaffected

References

git.kernel.org/...c/d838b5c99bcecd593b4710a93fce8fdbf122395b

git.kernel.org/...c/17eee264ef386ef30a69dd70e36f29893b85c170

cve.org (CVE-2022-49756)

nvd.nist.gov (CVE-2022-49756)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2022-49756

Support options

Helpdesk Chat, Email, Knowledgebase