cbcvebase.
CVE-2022-48738
published 2024-06-20

CVE-2022-48738: In the Linux kernel, the following vulnerability has been resolved: ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() We don't currently validate…

PriorityP427high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.23%
14.5th percentile
In the Linux kernel, the following vulnerability has been resolved: ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() We don't currently validate that the values being set are within the range we advertised to userspace as being valid, do so and reject any values that are out of range.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.16.10-1 (bookworm)linux 5.16.10-1 (bookworm)
linuxlinux
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < 40f598698129b5ceaf31012f9501b775c7b6e57d40f598698129b5ceaf31012f9501b775c7b6e57d
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < 586ef863c94354a7e00e5ae5ef01443d1dc99bc7586ef863c94354a7e00e5ae5ef01443d1dc99bc7
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < 65a61b1f56f5386486757930069fbdce94af08bf65a61b1f56f5386486757930069fbdce94af08bf
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < 68fd718724284788fc5f379e0b7cac541429ece768fd718724284788fc5f379e0b7cac541429ece7
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < a9394f21fba027147bf275b083c77955864c366aa9394f21fba027147bf275b083c77955864c366a
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < 9e8895f1b3d4433f6d78aa6578e9db61ca6e68309e8895f1b3d4433f6d78aa6578e9db61ca6e6830
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < bb72d2dda85564c66d909108ea6903937a41679dbb72d2dda85564c66d909108ea6903937a41679d
linuxlinux>= f227b88f0fce5f9b82aa934f8829a741c2e06d82 < 817f7c9335ec01e0f5e8caffc4f1dcd5e458a4c0817f7c9335ec01e0f5e8caffc4f1dcd5e458a4c0
linuxlinux_kernel< 4.9.3004.9.300
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.103-15.10.103-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 0 < 5.16.10-15.16.10-1
linuxlinux_kernel>= 4.10 < 4.14.2654.14.265
linuxlinux_kernel>= 4.15 < 4.19.2284.19.228
linuxlinux_kernel>= 4.20 < 5.4.1785.4.178
linuxlinux_kernel>= 5.11 < 5.15.225.15.22
linuxlinux_kernel>= 5.16 < 5.16.85.16.8
linuxlinux_kernel>= 5.5 < 5.10.995.10.99

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.