We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-49785

x86/sgx: Add overflow check in sgx_validate_offset_length()



Description

In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Add overflow check in sgx_validate_offset_length() sgx_validate_offset_length() function verifies "offset" and "length" arguments provided by userspace, but was missing an overflow check on their addition. Add it.

Reserved 2025-05-01 | Published 2025-05-01 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

c6d26d370767fa227fc44b98a8bdad112efdf563 before 5277e3d633a5d4157987f4aff068caa55e36db19
affected

c6d26d370767fa227fc44b98a8bdad112efdf563 before 3b1c10fb754b0b67165e3f055a4208e5ba26dc89
affected

c6d26d370767fa227fc44b98a8bdad112efdf563 before f0861f49bd946ff94fce4f82509c45e167f63690
affected

Default status
affected

5.11
affected

Any version before 5.11
unaffected

5.15.81
unaffected

6.0.10
unaffected

6.1
unaffected

References

git.kernel.org/...c/5277e3d633a5d4157987f4aff068caa55e36db19

git.kernel.org/...c/3b1c10fb754b0b67165e3f055a4208e5ba26dc89

git.kernel.org/...c/f0861f49bd946ff94fce4f82509c45e167f63690

cve.org (CVE-2022-49785)

nvd.nist.gov (CVE-2022-49785)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2022-49785

Support options

Helpdesk Chat, Email, Knowledgebase