vulnerability
Ubuntu: (CVE-2022-48824): linux vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:S/C:N/I:N/A:C) | Jul 16, 2024 | Nov 19, 2024 | Sep 1, 2025 |
Description
In the Linux kernel, the following vulnerability has been resolved:
scsi: myrs: Fix crash in error case
In myrs_detect(), cs->disable_intr is NULL when privdata->hw_init() fails
with non-zero. In this case, myrs_cleanup(cs) will call a NULL ptr and
crash the kernel.
[ 1.105606] myrs 0000:00:03.0: Unknown Initialization Error 5A
[ 1.105872] myrs 0000:00:03.0: Failed to initialize Controller
[ 1.106082] BUG: kernel NULL pointer dereference, address: 0000000000000000
[ 1.110774] Call Trace:
[ 1.110950] myrs_cleanup+0xe4/0x150 [myrs]
[ 1.111135] myrs_probe.cold+0x91/0x56a [myrs]
[ 1.111302] ? DAC960_GEM_intr_handler+0x1f0/0x1f0 [myrs]
[ 1.111500] local_pci_probe+0x48/0x90
Solutions
References
- CVE-2022-48824
- https://attackerkb.com/topics/CVE-2022-48824
- CWE-476
- URL-https://git.kernel.org/linus/4db09593af0b0b4d7d4805ebb3273df51d7cc30d
- URL-https://git.kernel.org/stable/c/0e42c4a3d732517edc3766dd45a14e60d29dd929
- URL-https://git.kernel.org/stable/c/1d6cd26605b4d662063a83c15c776b5299a1cb23
- URL-https://git.kernel.org/stable/c/4db09593af0b0b4d7d4805ebb3273df51d7cc30d
- URL-https://git.kernel.org/stable/c/5c5ceea00c8c9df150708e66cb9f2891192c1162
- URL-https://git.kernel.org/stable/c/6207f35c213f6cb2fc3f13b5e77f08c710e1de19
- URL-https://www.cve.org/CVERecord?id=CVE-2022-48824
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.