Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2022-48703— thermal/int340x_thermal: handle data_vault when the value is ZERO_SIZE_PTR

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于存在空指针取消引用漏洞。

AI Predicted 5.5 Difficulty: Easy EPSS 0.23% · P14

Possible ATT&CK Techniques 1 AI

T1203 · Exploitation for Client Execution

Affected Version Matrix 10

VendorProduct Version RangeStatus
Linux Linux 0ba13c763aacb27ab32bde5d559bf40e88465921< 722588f17fd3d3a127e50718ec2caf22bd7e9daa affected
0ba13c763aacb27ab32bde5d559bf40e88465921< 39d5137085a6c37ace4680ee4d24020a4a03e7dc affected
0ba13c763aacb27ab32bde5d559bf40e88465921< dae42083b045a4ddf71c57cf350cb2412b5915c2 affected
0ba13c763aacb27ab32bde5d559bf40e88465921< 7931e28098a4c1a2a6802510b0cbe57546d2049d affected
5.8 affected
< 5.8 unaffected
5.10.258≤ 5.10.* unaffected
5.15.189≤ 5.15.* unaffected
… +2 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2022-48703

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
thermal/int340x_thermal: handle data_vault when the value is ZERO_SIZE_PTR
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: thermal/int340x_thermal: handle data_vault when the value is ZERO_SIZE_PTR In some case, the GDDV returns a package with a buffer which has zero length. It causes that kmemdup() returns ZERO_SIZE_PTR (0x10). Then the data_vault_read() got NULL point dereference problem when accessing the 0x10 value in data_vault. [ 71.024560] BUG: kernel NULL pointer dereference, address: 0000000000000010 This patch uses ZERO_OR_NULL_PTR() for checking ZERO_SIZE_PTR or NULL value in data_vault.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于存在空指针取消引用漏洞。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 0ba13c763aacb27ab32bde5d559bf40e88465921 ~ 722588f17fd3d3a127e50718ec2caf22bd7e9daa -
Linux Linux 5.8 -

II. Public POCs for CVE-2022-48703

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-48703

登录查看更多情报信息。

Patches & Fixes for CVE-2022-48703 (1)

Other References for CVE-2022-48703 (2)

Same Patch Batch · Linux · 2024-05-03 · 25 CVEs total

CVE-2022-48673 9.8 CRITICAL net/smc: Fix possible access to freed memory in link clear
CVE-2022-48686 9.8 CRITICAL nvme-tcp: fix UAF when detecting digest errors
CVE-2022-48697 9.8 CRITICAL nvmet: fix a use-after-free
CVE-2022-48674 7.8 HIGH erofs: fix pcluster use-after-free on UP platforms
CVE-2022-48695 7.8 HIGH scsi: mpt3sas: Fix use-after-free warning
CVE-2022-48702 7.8 HIGH ALSA: emu10k1: Fix out of bounds access in snd_emu10k1_pcm_channel_alloc()
CVE-2022-48692 7.5 HIGH RDMA/srp: Set scmnd->result only when scmnd is not NULL
CVE-2022-48694 7.5 HIGH RDMA/irdma: Fix drain SQ hang with no completion
CVE-2022-48696 7.1 HIGH regmap: spi: Reserve space for register address/padding
CVE-2022-48693 soc: brcmstb: pm-arm: Fix refcount leak and __iomem leak bugs
CVE-2022-48705 wifi: mt76: mt7921e: fix crash in chip reset fail
CVE-2022-48704 drm/radeon: add a force flush to delay work when radeon
CVE-2022-48690 ice: Fix DMA mappings leak
CVE-2022-48701 ALSA: usb-audio: Fix an out-of-bounds bug in __snd_usb_parse_audio_interface()
CVE-2022-48699 sched/debug: fix dentry leak in update_sched_domain_debugfs
CVE-2022-48698 drm/amd/display: fix memory leak when using debugfs_lookup()
CVE-2022-48670 peci: cpu: Fix use-after-free in adev_release()
CVE-2022-48691 netfilter: nf_tables: clean up hook list when offload flags check fails
CVE-2022-48689 tcp: TX zerocopy should not sense pfmemalloc status
CVE-2022-48688 i40e: Fix kernel crash during module removal

Showing top 20 of 25 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-48703

No comments yet


Leave a comment