CVE-2022-49642

MEDIUM

Linux Kernel 5.4-5.18.13 DoS via Split Header Buffer Length Overflow

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: dwc-qos: Disable split header for Tegra194 There is a long-standing issue with the Synopsys DWC Ethernet driver for Tegra194 where random system crashes have been observed [0]. The problem occurs when the split header feature is enabled in the stmmac driver. In the bad case, a larger than expected buffer length is received and causes the calculation of the total buffer length to overflow. This results in a very large buffer length that causes the kernel to crash. Why this larger buffer length is received is not clear, however, the feedback from the NVIDIA design team is that the split header feature is not supported for Tegra194. Therefore, disable split header support for Tegra194 to prevent these random crashes from occurring. [0] https://lore.kernel.org/linux-tegra/[email protected]/

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-190
Status published
Products (18)
linux/Kernel 5.11.0 - 5.15.56linux
linux/Kernel 5.16.0 - 5.18.13linux
linux/Kernel 5.4.0 - 5.4.207linux
linux/Kernel 5.5.0 - 5.10.132linux
Linux/Linux < 5.4
Linux/Linux 5.10.132 - 5.10.*
Linux/Linux 5.15.56 - 5.15.*
Linux/Linux 5.18.13 - 5.18.*
Linux/Linux 5.19
Linux/Linux 5.4
... and 8 more
Published Feb 26, 2025
Tracked Since Feb 18, 2026