CVE-2022-48843

In the Linux kernel, the following vulnerability has been resolved: drm/vrr: Set VRR capable prop only if it is attached to connector VRR capable property is not attached by default to the connector It is attached only if VRR is supported. So if the driver tries to call drm core set prop function without it being attached that causes NULL dereference.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

24 Jul 2024, 18:25

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/0ba557d330946c23559aaea2d51ea649fdeca98a - () https://git.kernel.org/stable/c/0ba557d330946c23559aaea2d51ea649fdeca98a - Patch
References () https://git.kernel.org/stable/c/3534c5c005ef99a1804ed50b8a72cdae254cabb5 - () https://git.kernel.org/stable/c/3534c5c005ef99a1804ed50b8a72cdae254cabb5 - Patch
References () https://git.kernel.org/stable/c/62929726ef0ec72cbbe9440c5d125d4278b99894 - () https://git.kernel.org/stable/c/62929726ef0ec72cbbe9440c5d125d4278b99894 - Patch
References () https://git.kernel.org/stable/c/85271e92ae4f13aa679acaa6cf76b3c36bcb7bab - () https://git.kernel.org/stable/c/85271e92ae4f13aa679acaa6cf76b3c36bcb7bab - Patch
References () https://git.kernel.org/stable/c/941e8bcd2b2ba95490738e33dfeca27168452779 - () https://git.kernel.org/stable/c/941e8bcd2b2ba95490738e33dfeca27168452779 - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-476
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se resolvió la siguiente vulnerabilidad: drm/vrr: establezca la propiedad con capacidad de VRR solo si está conectada al conector. La propiedad con capacidad de VRR no está conectada de manera predeterminada al conector. Se conecta solo si se admite VRR. Entonces, si el controlador intenta llamar a la función drm core set prop sin que esté adjunta, eso causa una desreferencia NULL.

16 Jul 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-16 13:15

Updated : 2024-07-24 18:25


NVD link : CVE-2022-48843

Mitre link : CVE-2022-48843

CVE.ORG link : CVE-2022-48843


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference