CVE-2022-49894
Severity CVSS v4.0:
Pending analysis
Type:
CWE-476
NULL Pointer Dereference
Publication date:
01/05/2025
Last modified:
07/05/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
cxl/region: Fix region HPA ordering validation<br />
<br />
Some regions may not have any address space allocated. Skip them when<br />
validating HPA order otherwise a crash like the following may result:<br />
<br />
devm_cxl_add_region: cxl_acpi cxl_acpi.0: decoder3.4: created region9<br />
BUG: kernel NULL pointer dereference, address: 0000000000000000<br />
[..]<br />
RIP: 0010:store_targetN+0x655/0x1740 [cxl_core]<br />
[..]<br />
Call Trace:<br />
<br />
kernfs_fop_write_iter+0x144/0x200<br />
vfs_write+0x24a/0x4d0<br />
ksys_write+0x69/0xf0<br />
do_syscall_64+0x3a/0x90<br />
<br />
store_targetN+0x655/0x1740:<br />
alloc_region_ref at drivers/cxl/core/region.c:676<br />
(inlined by) cxl_port_attach_region at drivers/cxl/core/region.c:850<br />
(inlined by) cxl_region_attach at drivers/cxl/core/region.c:1290<br />
(inlined by) attach_target at drivers/cxl/core/region.c:1410<br />
(inlined by) store_targetN at drivers/cxl/core/region.c:1453
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.0 (including) | 6.0.8 (excluding) |
cpe:2.3:o:linux:linux_kernel:6.1:rc1:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:6.1:rc2:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:6.1:rc3:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page