In the Linux kernel, the following vulnerability has been resolved:
ice: fix NULL pointer dereference in ice_update_vsi_tx_ring_stats()
It is possible to do NULL pointer dereference in routine that updates
Tx ring stats. Currently only stats and bytes are updated when ring
pointer is valid, but later on ring is accessed to propagate gathered Tx
stats onto VSI stats.
Change the existing logic to move to next ring when ring is NULL.
References
Link | Resource |
---|---|
https://git.kernel.org/stable/c/2397270ec97c5e3009a58ac110a25e1869e9d6ff | Mailing List Patch |
https://git.kernel.org/stable/c/f153546913bada41a811722f2c6d17c3243a0333 | Mailing List Patch |
https://git.kernel.org/stable/c/2397270ec97c5e3009a58ac110a25e1869e9d6ff | Mailing List Patch |
https://git.kernel.org/stable/c/f153546913bada41a811722f2c6d17c3243a0333 | Mailing List Patch |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:34
Type | Values Removed | Values Added |
---|---|---|
References | () https://git.kernel.org/stable/c/2397270ec97c5e3009a58ac110a25e1869e9d6ff - Mailing List, Patch | |
References | () https://git.kernel.org/stable/c/f153546913bada41a811722f2c6d17c3243a0333 - Mailing List, Patch |
17 Jul 2024, 20:31
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CWE | CWE-476 | |
First Time |
Linux
Linux linux Kernel |
|
References | () https://git.kernel.org/stable/c/2397270ec97c5e3009a58ac110a25e1869e9d6ff - Mailing List, Patch | |
References | () https://git.kernel.org/stable/c/f153546913bada41a811722f2c6d17c3243a0333 - Mailing List, Patch | |
CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc6:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc8:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:5.17:rc7:*:*:*:*:*:* |
|
Summary |
|
16 Jul 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-16 13:15
Updated : 2024-11-21 07:34
NVD link : CVE-2022-48841
Mitre link : CVE-2022-48841
CVE.ORG link : CVE-2022-48841
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-476
NULL Pointer Dereference