cbcvebase.
CVE-2022-48708
published 2024-05-21

CVE-2022-48708: In the Linux kernel, the following vulnerability has been resolved: pinctrl: single: fix potential NULL dereference Added checking of pointer "function" in…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.1th percentile
In the Linux kernel, the following vulnerability has been resolved: pinctrl: single: fix potential NULL dereference Added checking of pointer "function" in pcs_set_mux(). pinmux_generic_get_function() can return NULL and the pointer "function" was dereferenced without checking against NULL. Found by Linux Verification Center (linuxtesting.org) with SVACE.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.12-1 (bookworm)linux 6.1.12-1 (bookworm)
linuxlinux
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < 1177bdafe87cbe543a2dc48a9bbac265aa5864db1177bdafe87cbe543a2dc48a9bbac265aa5864db
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < e671e63587c92b3fd767cf82e73129f6d5feeb33e671e63587c92b3fd767cf82e73129f6d5feeb33
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < 2b763f7de108cb1a5ad5ed08e617d677341947cb2b763f7de108cb1a5ad5ed08e617d677341947cb
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < 6e2a0521e4e84a2698f2da3950fb5c5496a4d2086e2a0521e4e84a2698f2da3950fb5c5496a4d208
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < 71668706fbe7d20e6f172fa3287fa8aac1b56c2671668706fbe7d20e6f172fa3287fa8aac1b56c26
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < bcc487001a15f71f103d102cba4ac8145d7a68f2bcc487001a15f71f103d102cba4ac8145d7a68f2
linuxlinux>= 571aec4df5b72a80f80d1e524da8fbd7ff525c98 < d2d73e6d4822140445ad4a7b1c6091e0f5fe703bd2d73e6d4822140445ad4a7b1c6091e0f5fe703b
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.12-16.1.12-1
linuxlinux_kernel>= 0 < 6.1.12-16.1.12-1
linuxlinux_kernel>= 0 < 6.1.12-16.1.12-1
linuxlinux_kernel>= 4.11 < 4.14.3064.14.306
linuxlinux_kernel>= 4.15 < 4.19.2734.19.273
linuxlinux_kernel>= 4.20 < 5.4.2325.4.232
linuxlinux_kernel>= 5.11 < 5.15.945.15.94
linuxlinux_kernel>= 5.16 < 6.1.126.1.12
linuxlinux_kernel>= 5.5 < 5.10.1685.10.168

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.