cbcvebase.
CVE-2022-48732
published 2024-06-20

CVE-2022-48732: In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix off by one in BIOS boundary checking Bounds checking when parsing init…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.24%
14.6th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix off by one in BIOS boundary checking Bounds checking when parsing init scripts embedded in the BIOS reject access to the last byte. This causes driver initialization to fail on Apple eMac's with GeForce 2 MX GPUs, leaving the system with no working console. This is probably only seen on OpenFirmware machines like PowerPC Macs because the BIOS image provided by OF is only the used parts of the ROM, not a power-of-two blocks read from PCI directly so PCs always have empty bytes at the end that are never accessed.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.16.10-1 (bookworm)linux 5.16.10-1 (bookworm)
linuxlinux
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < d4b746e60fd8eaa8016e144223abe91158edcdadd4b746e60fd8eaa8016e144223abe91158edcdad
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < 909d3ec1bf9f0ec534bfc081b77c0836fea7b0e2909d3ec1bf9f0ec534bfc081b77c0836fea7b0e2
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < b2a21669ee98aafc41c6d42ef15af4dab9e6e882b2a21669ee98aafc41c6d42ef15af4dab9e6e882
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < acc887ba88333f5fec49631f12d8cc7ebd95781cacc887ba88333f5fec49631f12d8cc7ebd95781c
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < f071d9fa857582d7bd77f4906691f73d3edeab73f071d9fa857582d7bd77f4906691f73d3edeab73
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < d877e814a62b7de9069aeff8bc1d979dfc996e06d877e814a62b7de9069aeff8bc1d979dfc996e06
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < e7c36fa8a1e63b08312162179c78a0c7795ea369e7c36fa8a1e63b08312162179c78a0c7795ea369
linuxlinux>= 4d4e9907ff572bb1d1c0f6913ad6e3d6d4525077 < 1b777d4d9e383d2744fc9b3a09af6ec1893c8b1a1b777d4d9e383d2744fc9b3a09af6ec1893c8b1a
linuxlinux_kernel>= 0 < 5.10.103-15.10.103-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 4.10 < 4.14.2654.14.265
linuxlinux_kernel>= 4.15 < 4.19.2284.19.228
linuxlinux_kernel>= 4.20 < 5.4.1785.4.178
linuxlinux_kernel>= 4.8 < 4.9.3004.9.300
linuxlinux_kernel>= 5.11 < 5.15.225.15.22
linuxlinux_kernel>= 5.16 < 5.16.85.16.8
linuxlinux_kernel>= 5.5 < 5.10.995.10.99

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.