CVE-2022-49184

MEDIUM

Linux kernel - Null Pointer Dereference

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: net: sparx5: switchdev: fix possible NULL pointer dereference As the possible failure of the allocation, devm_kzalloc() may return NULL pointer. Therefore, it should be better to check the 'db' in order to prevent the dereference of NULL pointer.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 15.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (14)
linux/Kernel 5.15.0 - 5.15.33linux
linux/Kernel 5.16.0 - 5.16.19linux
linux/Kernel 5.17.0 - 5.17.2linux
Linux/Linux < 5.15
Linux/Linux 10615907e9b51c9ae92f3a6ecabd01c482f20f32 - 0906f3a3df07835e37077d8971aac65347f2ed57
Linux/Linux 10615907e9b51c9ae92f3a6ecabd01c482f20f32 - b375ea083fa649092cd016ac1f89a2d1fd8f8e8b
Linux/Linux 10615907e9b51c9ae92f3a6ecabd01c482f20f32 - c346791877e6ce923bb21e34b30c6f99326aa5a8
Linux/Linux 10615907e9b51c9ae92f3a6ecabd01c482f20f32 - e7e1fff76c4c57688dc7d53a3b6212182d5628d0
Linux/Linux 5.15
Linux/Linux 5.15.33 - 5.15.*
... and 4 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026