We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-49948

vt: Clear selection before changing the font



Description

In the Linux kernel, the following vulnerability has been resolved: vt: Clear selection before changing the font When changing the console font with ioctl(KDFONTOP) the new font size can be bigger than the previous font. A previous selection may thus now be outside of the new screen size and thus trigger out-of-bounds accesses to graphics memory if the selection is removed in vc_do_resize(). Prevent such out-of-memory accesses by dropping the selection before the various con_font_set() console handlers are called.

Reserved 2025-06-18 | Published 2025-06-18 | Updated 2025-06-18 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before c555cf04684fde39b5b0dd9fd80730030ee10c4a
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before e9ba4611ddf676194385506222cce7b0844e708e
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before f74b4a41c5d7c9522469917e3072e55d435efd9e
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 1cf1930369c9dc428d827b60260c53271bff3285
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 989201bb8c00b222235aff04e6200230d29dc7bb
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 2535431ae967ad17585513649625fea7db28d4db
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before c904fe03c4bd1f356a58797d39e2a5d0ca15cefc
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 before 566f9c9f89337792070b5a6062dff448b3e7977f
affected

Default status
affected

4.9.328
unaffected

4.14.293
unaffected

4.19.258
unaffected

5.4.213
unaffected

5.10.142
unaffected

5.15.66
unaffected

5.19.8
unaffected

6.0
unaffected

References

git.kernel.org/...c/c555cf04684fde39b5b0dd9fd80730030ee10c4a

git.kernel.org/...c/e9ba4611ddf676194385506222cce7b0844e708e

git.kernel.org/...c/f74b4a41c5d7c9522469917e3072e55d435efd9e

git.kernel.org/...c/1cf1930369c9dc428d827b60260c53271bff3285

git.kernel.org/...c/989201bb8c00b222235aff04e6200230d29dc7bb

git.kernel.org/...c/2535431ae967ad17585513649625fea7db28d4db

git.kernel.org/...c/c904fe03c4bd1f356a58797d39e2a5d0ca15cefc

git.kernel.org/...c/566f9c9f89337792070b5a6062dff448b3e7977f

cve.org (CVE-2022-49948)

nvd.nist.gov (CVE-2022-49948)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2022-49948

Support options

Helpdesk Chat, Email, Knowledgebase