CVE-2022-49570

MEDIUM

Linux Kernel 5.14-5.14.99, 5.15-5.15.57, 5.16-5.18.14 - Integer Overflow in GPIO Xilinx Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-xilinx: Fix integer overflow Current implementation is not able to configure more than 32 pins due to incorrect data type. So type casting with unsigned long to avoid it.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-190
Status published
Products (12)
linux/Kernel 5.14.0 - 5.15.58linux
linux/Kernel 5.16.0 - 5.18.15linux
Linux/Linux < 5.14
Linux/Linux 02b3f84d9080b0f4297f31258307f626a43faba5 - 32c094a09d5829ad9b02cdf667569aefa8de0ea6
Linux/Linux 02b3f84d9080b0f4297f31258307f626a43faba5 - 6f16a5390640807dde420ee5ccbc4c95577aea6a
Linux/Linux 02b3f84d9080b0f4297f31258307f626a43faba5 - e129e5486b981d324057e6986059f852658b0d00
Linux/Linux 5.14
Linux/Linux 5.15.58 - 5.15.*
Linux/Linux 5.18.15 - 5.18.*
Linux/Linux 5.19
... and 2 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026