We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-49806

net: microchip: sparx5: Fix potential null-ptr-deref in sparx_stats_init() and sparx5_start()



Description

In the Linux kernel, the following vulnerability has been resolved: net: microchip: sparx5: Fix potential null-ptr-deref in sparx_stats_init() and sparx5_start() sparx_stats_init() calls create_singlethread_workqueue() and not checked the ret value, which may return NULL. And a null-ptr-deref may happen: sparx_stats_init() create_singlethread_workqueue() # failed, sparx5->stats_queue is NULL queue_delayed_work() queue_delayed_work_on() __queue_delayed_work() # warning here, but continue __queue_work() # access wq->flags, null-ptr-deref Check the ret value and return -ENOMEM if it is NULL. So as sparx5_start().

Reserved 2025-05-01 | Published 2025-05-01 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

b37a1bae742f92cc9b1f777d54e04ee3d86bbfc2 before 80e590aeb132887102c3fa79d99b338f099dc952
affected

b37a1bae742f92cc9b1f777d54e04ee3d86bbfc2 before 456327e565dc49d18b2f595f39f47df8a36f1057
affected

b37a1bae742f92cc9b1f777d54e04ee3d86bbfc2 before 639f5d006e36bb303f525d9479448c412b720c39
affected

Default status
affected

5.14
affected

Any version before 5.14
unaffected

5.15.80
unaffected

6.0.10
unaffected

6.1
unaffected

References

git.kernel.org/...c/80e590aeb132887102c3fa79d99b338f099dc952

git.kernel.org/...c/456327e565dc49d18b2f595f39f47df8a36f1057

git.kernel.org/...c/639f5d006e36bb303f525d9479448c412b720c39

cve.org (CVE-2022-49806)

nvd.nist.gov (CVE-2022-49806)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2022-49806

Support options

Helpdesk Chat, Email, Knowledgebase