Home

Description

In the Linux kernel, the following vulnerability has been resolved: media: atomisp: prevent integer overflow in sh_css_set_black_frame() The "height" and "width" values come from the user so the "height * width" multiplication can overflow.

PUBLISHED Reserved 2025-09-17 | Published 2025-09-18 | Updated 2025-09-29 | Assigner Linux

Product status

Default status
unaffected

a49d25364dfb9f8a64037488a39ab1f56c5fa419 (git) before 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
affected

ad85094b293e40e7a2f831b0311a389d952ebd5e (git) before a560aeac2f2d284903b5900774765d7fc61547bc
affected

ad85094b293e40e7a2f831b0311a389d952ebd5e (git) before a549517e4b761f3940011db30320cb8c9badde54
affected

ad85094b293e40e7a2f831b0311a389d952ebd5e (git) before 3ad290194bb06979367622e47357462836c1d3b4
affected

Default status
affected

4.12
affected

5.8
affected

Any version before 4.12
unaffected

4.18 (semver) before 5.8
unaffected

5.15.77 (semver)
unaffected

6.0.7 (semver)
unaffected

6.1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654

git.kernel.org/...c/a560aeac2f2d284903b5900774765d7fc61547bc

git.kernel.org/...c/a549517e4b761f3940011db30320cb8c9badde54

git.kernel.org/...c/3ad290194bb06979367622e47357462836c1d3b4

cve.org (CVE-2022-50399)

nvd.nist.gov (CVE-2022-50399)

Download JSON