CVE-2022-49141

MEDIUM

Linux Kernel 5.17-5.17.2 - NULL Pointer Dereference in DSA Felix Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: net: dsa: felix: fix possible NULL pointer dereference As the possible failure of the allocation, kzalloc() may return NULL pointer. Therefore, it should be better to check the 'sgi' in order to prevent the dereference of NULL pointer.

Scores

CVSS v3 5.5
EPSS 0.0020
EPSS Percentile 10.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (8)
linux/Kernel 5.17.0 - 5.17.3linux
Linux/Linux < 5.17
Linux/Linux 23ae3a7877718931474684ef4fbbaf1d1511ee84 - 866b7a278cdb51eb158cd8513bc7438fc857804a
Linux/Linux 23ae3a7877718931474684ef4fbbaf1d1511ee84 - b7ff8b5e75d4e91ec8c62d621aac8dfb84c57aa9
Linux/Linux 5.17
Linux/Linux 5.17.3 - 5.17.*
Linux/Linux 5.18
linux/linux_kernel 5.17 - 5.17.3
Published Feb 26, 2025
Tracked Since Feb 18, 2026