Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2022-48672— of: fdt: fix off-by-one error in unflatten_dt_nodes()

AI Predicted 7.8 Difficulty: Moderate EPSS 0.25% · P16

Affected Version Matrix 16

VendorProductVersion RangeStatus
LinuxLinux78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< cbdda20ce363356698835185801a58a28f644853affected
78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< 2566706ac6393386a4e7c4ce23fe17f4c98d9aa0affected
78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< e0e88c25f88b9805572263c9ed20f1d88742feafaffected
78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< ee4369260e77821602102dcc7d792de39a56365caffected
78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< ba6b9f7cc1108bad6e2c53b1d6e0156379188db7affected
78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< 2133f451311671c7c42b5640d2b999326b39aa0eaffected
78c44d910d3e5f96dc6b3695fc1e4efd7c46a455< 2f945a792f67815abca26fa8a5e863ccf3fa1181affected
4.7affected
… +8 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-48672

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
of: fdt: fix off-by-one error in unflatten_dt_nodes()
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: of: fdt: fix off-by-one error in unflatten_dt_nodes() Commit 78c44d910d3e ("drivers/of: Fix depth when unflattening devicetree") forgot to fix up the depth check in the loop body in unflatten_dt_nodes() which makes it possible to overflow the nps[] buffer... Found by Linux Verification Center (linuxtesting.org) with the SVACE static analysis tool.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于函数unwatten_dt_nodes()存在安全漏洞。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 78c44d910d3e5f96dc6b3695fc1e4efd7c46a455 ~ cbdda20ce363356698835185801a58a28f644853 -
LinuxLinux 4.7 -

II. Public POCs for CVE-2022-48672

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-48672

登录查看更多情报信息。

Other References for CVE-2022-48672 (6)

Same Patch Batch · Linux · 2024-05-03 · 25 CVEs total

CVE-2022-486739.8 CRITICALnet/smc: Fix possible access to freed memory in link clear
CVE-2022-486869.8 CRITICALnvme-tcp: fix UAF when detecting digest errors
CVE-2022-486979.8 CRITICALnvmet: fix a use-after-free
CVE-2022-486747.8 HIGHerofs: fix pcluster use-after-free on UP platforms
CVE-2022-486957.8 HIGHscsi: mpt3sas: Fix use-after-free warning
CVE-2022-487027.8 HIGHALSA: emu10k1: Fix out of bounds access in snd_emu10k1_pcm_channel_alloc()
CVE-2022-486927.5 HIGHRDMA/srp: Set scmnd->result only when scmnd is not NULL
CVE-2022-486947.5 HIGHRDMA/irdma: Fix drain SQ hang with no completion
CVE-2022-486967.1 HIGHregmap: spi: Reserve space for register address/padding
CVE-2022-48705wifi: mt76: mt7921e: fix crash in chip reset fail
CVE-2022-48670peci: cpu: Fix use-after-free in adev_release()
CVE-2022-48704drm/radeon: add a force flush to delay work when radeon
CVE-2022-48690ice: Fix DMA mappings leak
CVE-2022-48703thermal/int340x_thermal: handle data_vault when the value is ZERO_SIZE_PTR
CVE-2022-48701ALSA: usb-audio: Fix an out-of-bounds bug in __snd_usb_parse_audio_interface()
CVE-2022-48699sched/debug: fix dentry leak in update_sched_domain_debugfs
CVE-2022-48698drm/amd/display: fix memory leak when using debugfs_lookup()
CVE-2022-48693soc: brcmstb: pm-arm: Fix refcount leak and __iomem leak bugs
CVE-2022-48691netfilter: nf_tables: clean up hook list when offload flags check fails
CVE-2022-48689tcp: TX zerocopy should not sense pfmemalloc status

Showing top 20 of 25 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-48672

No comments yet


Leave a comment