目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2022-49974— Linux kernel 安全漏洞

AI Predicted 5.5 Difficulty: Moderate EPSS 0.18% · P8

Possible ATT&CK Techniques 1AI

T1211 · Exploitation for Stealth

Affected Version Matrix 6

ベンダープロダクトVersion Rangeステータス
LinuxLinux2af16c1f846bd60240745bbd3afa13d5f040c61a< 7c6e6c334154be16740b44dcd7638fb510b9bd91affected
2af16c1f846bd60240745bbd3afa13d5f040c61a< 1ff89e06c2e5fab30274e4b02360d4241d6e605eaffected
5.16affected
< 5.16unaffected
5.19.7≤ 5.19.*unaffected
6.0≤ *unaffected
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2022-49974の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
HID: nintendo: fix rumble worker null pointer deref
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: HID: nintendo: fix rumble worker null pointer deref We can dereference a null pointer trying to queue work to a destroyed workqueue. If the device is disconnected, nintendo_hid_remove is called, in which the rumble_queue is destroyed. Avoid using that queue to defer rumble work once the controller state is set to JOYCON_CTLR_STATE_REMOVED. This eliminates the null pointer dereference.
ソース: CVE Program / CVE List V5
CVSS情報
N/A
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于震动工作队列空指针取消引用,可能导致设备断开连接后访问已释放队列。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux 2af16c1f846bd60240745bbd3afa13d5f040c61a ~ 7c6e6c334154be16740b44dcd7638fb510b9bd91 -
LinuxLinux 5.16 -

II. CVE-2022-49974の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2022-49974のインテリジェンス情報

登录查看更多情报信息。

Same Patch Batch · Linux · 2025-06-18 · 362 CVEs total

CVE-2025-380759.8 CRITICALscsi: target: iscsi: Fix timeout on deleted connection
CVE-2025-380748.8 HIGHvhost-scsi: protect vq->log_used with vq->mutex
CVE-2025-380528.8 HIGHnet/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done
CVE-2025-380168.8 HIGHHID: bpf: abort dispatch if device destroyed
CVE-2025-380627.8 HIGHgenirq/msi: Store the IOMMU IOVA directly in msi_desc instead of iommu_cookie
CVE-2025-380287.8 HIGHNFS/localio: Fix a race in nfs_local_open_fh()
CVE-2025-380247.8 HIGHRDMA/rxe: Fix slab-use-after-free Read in rxe_queue_cleanup bug
CVE-2025-380587.8 HIGH__legitimize_mnt(): check for MNT_SYNC_UMOUNT should be under mount_lock
CVE-2025-380227.8 HIGHRDMA/core: Fix "KASAN: slab-use-after-free Read in ib_register_device" problem
CVE-2025-380797.8 HIGHcrypto: algif_hash - fix double free in hash_accept
CVE-2025-380057.8 HIGHdmaengine: ti: k3-udma: Add missing locking
CVE-2025-380607.8 HIGHbpf: copy_verifier_state() should copy 'loop_entry' field
CVE-2025-380807.8 HIGHdrm/amd/display: Increase block_sequence array size
CVE-2025-380127.8 HIGHsched_ext: bpf_iter_scx_dsq_new() should always initialize iterator
CVE-2025-380517.8 HIGHsmb: client: Fix use-after-free in cifs_fill_dirent
CVE-2025-380687.8 HIGHcrypto: lzo - Fix compression buffer overrun
CVE-2025-380657.8 HIGHorangefs: Do not truncate file size
CVE-2025-380647.8 HIGHvirtio: break and reset virtio devices on device_shutdown()
CVE-2025-380827.8 HIGHgpio: virtuser: fix potential out-of-bound write
CVE-2025-380787.8 HIGHALSA: pcm: Fix race of buffer access at PCM OSS layer

Showing 20 of 362 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2022-49974へのコメント

まだコメントはありません


コメントを残す