CVE-2022-49564

In the Linux kernel, the following vulnerability has been resolved: crypto: qat - add param check for DH Reject requests with a source buffer that is bigger than the size of the key. This is to prevent a possible integer underflow that might happen when copying the source scatterlist into a linear buffer.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

10 Mar 2025, 20:21

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-191
References () https://git.kernel.org/stable/c/76c9216833e7c20a67c987cf89719a3f01666aaa - () https://git.kernel.org/stable/c/76c9216833e7c20a67c987cf89719a3f01666aaa - Patch
References () https://git.kernel.org/stable/c/e7f979ed51f96495328157df663c835b17db1e30 - () https://git.kernel.org/stable/c/e7f979ed51f96495328157df663c835b17db1e30 - Patch
References () https://git.kernel.org/stable/c/2acbb8771f6ac82422886e63832ee7a0f4b1635b - () https://git.kernel.org/stable/c/2acbb8771f6ac82422886e63832ee7a0f4b1635b - Patch
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

26 Feb 2025, 07:01

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-26 07:01

Updated : 2025-03-10 21:19


NVD link : CVE-2022-49564

Mitre link : CVE-2022-49564


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-191

Integer Underflow (Wrap or Wraparound)