目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2022-50625— Linux kernel 安全漏洞

AI 预测 5.9 利用难度: 较易 EPSS 0.23% · P14

可能的 ATT&CK 技术 1AI

T1206

影响版本矩阵 20

厂商产品版本范围状态
LinuxLinux0dd1e247fd39aed20fd2baacc62ca44d82534798< 1c5f0d3f480abd8c26761b6b1f486822e77faea3affected
0dd1e247fd39aed20fd2baacc62ca44d82534798< a4ea20ab82aa2b197dc7b08f51e1d615578276a0affected
0dd1e247fd39aed20fd2baacc62ca44d82534798< 78d837ce20517e0c1ff3ebe08ad64636e02c2e48affected
0dd1e247fd39aed20fd2baacc62ca44d82534798< 965f07ea5fd1b9591bcccc825a93ad883e56222caffected
0dd1e247fd39aed20fd2baacc62ca44d82534798< d5b16eb076f46c88d02d41ece5bec4e0d89158bbaffected
0dd1e247fd39aed20fd2baacc62ca44d82534798< d71a611fca1984c0765f9317ff471ac8cd0e3e2faffected
0dd1e247fd39aed20fd2baacc62ca44d82534798< 38a10fdd54d17590d45cb1c43b9889da383b6b1aaffected
0dd1e247fd39aed20fd2baacc62ca44d82534798< 64bc5dbc3260230e2f022288c71e5c680059384aaffected
… +12 条更多
获取后续新漏洞提醒登录后订阅

一、 漏洞 CVE-2022-50625 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
serial: amba-pl011: avoid SBSA UART accessing DMACR register
来源: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: serial: amba-pl011: avoid SBSA UART accessing DMACR register Chapter "B Generic UART" in "ARM Server Base System Architecture" [1] documentation describes a generic UART interface. Such generic UART does not support DMA. In current code, sbsa_uart_pops and amba_pl011_pops share the same stop_rx operation, which will invoke pl011_dma_rx_stop, leading to an access of the DMACR register. This commit adds a using_rx_dma check in pl011_dma_rx_stop to avoid the access to DMACR register for SBSA UARTs which does not support DMA. When the kernel enables DMA engine with "CONFIG_DMA_ENGINE=y", Linux SBSA PL011 driver will access PL011 DMACR register in some functions. For most real SBSA Pl011 hardware implementations, the DMACR write behaviour will be ignored. So these DMACR operations will not cause obvious problems. But for some virtual SBSA PL011 hardware, like Xen virtual SBSA PL011 (vpl011) device, the behaviour might be different. Xen vpl011 emulation will inject a data abort to guest, when guest is accessing an unimplemented UART register. As Xen VPL011 is SBSA compatible, it will not implement DMACR register. So when Linux SBSA PL011 driver access DMACR register, it will get an unhandled data abort fault and the application will get a segmentation fault: Unhandled fault at 0xffffffc00944d048 Mem abort info: ESR = 0x96000000 EC = 0x25: DABT (current EL), IL = 32 bits SET = 0, FnV = 0 EA = 0, S1PTW = 0 FSC = 0x00: ttbr address size fault Data abort info: ISV = 0, ISS = 0x00000000 CM = 0, WnR = 0 swapper pgtable: 4k pages, 39-bit VAs, pgdp=0000000020e2e000 [ffffffc00944d048] pgd=100000003ffff803, p4d=100000003ffff803, pud=100000003ffff803, pmd=100000003fffa803, pte=006800009c090f13 Internal error: ttbr address size fault: 96000000 [#1] PREEMPT SMP ... Call trace: pl011_stop_rx+0x70/0x80 tty_port_shutdown+0x7c/0xb4 tty_port_close+0x60/0xcc uart_close+0x34/0x8c tty_release+0x144/0x4c0 __fput+0x78/0x220 ____fput+0x1c/0x30 task_work_run+0x88/0xc0 do_notify_resume+0x8d0/0x123c el0_svc+0xa8/0xc0 el0t_64_sync_handler+0xa4/0x130 el0t_64_sync+0x1a0/0x1a4 Code: b9000083 b901f001 794038a0 8b000042 (b9000041) ---[ end trace 83dd93df15c3216f ]--- note: bootlogd[132] exited with preempt_count 1 /etc/rcS.d/S07bootlogd: line 47: 132 Segmentation fault start-stop-daemon This has been discussed in the Xen community, and we think it should fix this in Linux. See [2] for more information. [1] https://developer.arm.com/documentation/den0094/c/?lang=en [2] https://lists.xenproject.org/archives/html/xen-devel/2022-11/msg00543.html
来源: CVE Program / CVE List V5
CVSS Information
N/A
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于amba-pl011串口驱动错误访问DMACR寄存器,可能导致虚拟设备问题。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商产品影响版本CPE订阅
LinuxLinux 0dd1e247fd39aed20fd2baacc62ca44d82534798 ~ 1c5f0d3f480abd8c26761b6b1f486822e77faea3 -
LinuxLinux 4.2 -

二、漏洞 CVE-2022-50625 的公开POC

#POC 描述源链接神龙链接
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2022-50625 的情报信息

登录查看更多情报信息。

同批安全公告 · Linux · 2025-12-08 · 共 82 条

CVE-2023-537519.8 CRITICALLinux kernel 安全漏洞
CVE-2025-403209.8 CRITICALLinux kernel 安全漏洞
CVE-2023-537699.3 CRITICALLinux kernel 安全漏洞
CVE-2023-537648.8 HIGHLinux kernel 安全漏洞
CVE-2023-537628.8 HIGHLinux kernel 安全漏洞
CVE-2025-403188.8 HIGHLinux kernel 安全漏洞
CVE-2025-402928.4 HIGHLinux kernel 安全漏洞
CVE-2025-403098.0 HIGHLinux kernel 安全漏洞
CVE-2025-403037.8 HIGHLinux kernel 安全漏洞
CVE-2025-402917.8 HIGHLinux kernel 安全漏洞
CVE-2023-537637.8 HIGHLinux kernel 安全漏洞
CVE-2023-537597.8 HIGHLinux kernel 安全漏洞
CVE-2025-403177.8 HIGHLinux kernel 安全漏洞
CVE-2025-403197.8 HIGHLinux kernel 安全漏洞
CVE-2025-403237.8 HIGHLinux kernel 安全漏洞
CVE-2023-537537.8 HIGHLinux kernel 安全漏洞
CVE-2023-537527.8 HIGHLinux kernel 安全漏洞
CVE-2023-537477.8 HIGHLinux kernel 安全漏洞
CVE-2022-506237.8 HIGHLinux kernel 安全漏洞
CVE-2022-506307.8 HIGHLinux kernel 安全漏洞

显示前 20 条,共 82 条。 查看全部 &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2022-50625

暂无评论


发表评论