CVE-2022-49104
published 2025-02-26CVE-2022-49104: In the Linux kernel, the following vulnerability has been resolved: staging: vchiq_core: handle NULL result of find_service_by_handle In case of an invalid…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.9th percentile
In the Linux kernel, the following vulnerability has been resolved:
staging: vchiq_core: handle NULL result of find_service_by_handle
In case of an invalid handle the function find_servive_by_handle
returns NULL. So take care of this and avoid a NULL pointer dereference.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.17.3-1 (bookworm) | linux 5.17.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 77b3f6c49105088f157672c6e16deb0154a1383b < aa0b7296785312a4bfa8fac0ba8ad78698fd9fcf | aa0b7296785312a4bfa8fac0ba8ad78698fd9fcf |
| linux | linux | >= 77b3f6c49105088f157672c6e16deb0154a1383b < 42f2142a337ee372455574809fc924580a7e51b2 | 42f2142a337ee372455574809fc924580a7e51b2 |
| linux | linux | >= 77b3f6c49105088f157672c6e16deb0154a1383b < 04202f54dd8899e10f56a89c4c1ede0043fa22af | 04202f54dd8899e10f56a89c4c1ede0043fa22af |
| linux | linux | >= 77b3f6c49105088f157672c6e16deb0154a1383b < 3b424f6586a870b8d657c5e5419465bbe0e7b61f | 3b424f6586a870b8d657c5e5419465bbe0e7b61f |
| linux | linux | >= 77b3f6c49105088f157672c6e16deb0154a1383b < ca225857faf237234d2fffe5d1919467dfadd822 | ca225857faf237234d2fffe5d1919467dfadd822 |
| linux | linux_kernel | < 5.10.111 | 5.10.111 |
| linux | linux_kernel | >= 0 < 5.10.113-1 | 5.10.113-1 |
| linux | linux_kernel | >= 0 < 5.17.3-1 | 5.17.3-1 |
| linux | linux_kernel | >= 0 < 5.17.3-1 | 5.17.3-1 |
| linux | linux_kernel | >= 0 < 5.17.3-1 | 5.17.3-1 |
| linux | linux_kernel | >= 5.11 < 5.15.34 | 5.15.34 |
| linux | linux_kernel | >= 5.16 < 5.16.20 | 5.16.20 |
| linux | linux_kernel | >= 5.17 < 5.17.3 | 5.17.3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: staging: vchiq_core: handle NULL result of find_service_by_handle
vendor_redhat·2025-02-26·CVSS 5.5
CVE-2022-49104 [MEDIUM] CWE-476 kernel: staging: vchiq_core: handle NULL result of find_service_by_handle
kernel: staging: vchiq_core: handle NULL result of find_service_by_handle
In the Linux kernel, the following vulnerability has been resolved:
staging: vchiq_core: handle NULL result of find_service_by_handle
In case of an invalid handle the function find_servive_by_handle
returns NULL. So take care of this and avoid a NULL pointer dereference.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt
Debian
CVE-2022-49104: linux - In the Linux kernel, the following vulnerability has been resolved: staging: vc...
vendor_debian·2022·CVSS 5.5
CVE-2022-49104 [MEDIUM] CVE-2022-49104: linux - In the Linux kernel, the following vulnerability has been resolved: staging: vc...
In the Linux kernel, the following vulnerability has been resolved: staging: vchiq_core: handle NULL result of find_service_by_handle In case of an invalid handle the function find_servive_by_handle returns NULL. So take care of this and avoid a NULL pointer dereference.
Scope: local
bookworm: resolved (fixed in 5.17.3-1)
bullseye: resolved (fixed in 5.10.113-1)
forky: resolved (fixed in 5.17.3-1)
sid: resolved (fixed in 5.17.3-1)
trixie: resolved (fixed in 5.17.3-1)
GHSA
GHSA-p67q-m837-7r9h: In the Linux kernel, the following vulnerability has been resolved:
staging: vchiq_core: handle NULL result of find_service_by_handle
In case of an
ghsa_unreviewed·2025-03-14
CVE-2022-49104 [MEDIUM] CWE-476 GHSA-p67q-m837-7r9h: In the Linux kernel, the following vulnerability has been resolved:
staging: vchiq_core: handle NULL result of find_service_by_handle
In case of an
In the Linux kernel, the following vulnerability has been resolved:
staging: vchiq_core: handle NULL result of find_service_by_handle
In case of an invalid handle the function find_servive_by_handle
returns NULL. So take care of this and avoid a NULL pointer dereference.
OSV
CVE-2022-49104: In the Linux kernel, the following vulnerability has been resolved: staging: vchiq_core: handle NULL result of find_service_by_handle In case of an in
osv·2025-02-26·CVSS 5.5
CVE-2022-49104 [MEDIUM] CVE-2022-49104: In the Linux kernel, the following vulnerability has been resolved: staging: vchiq_core: handle NULL result of find_service_by_handle In case of an in
In the Linux kernel, the following vulnerability has been resolved: staging: vchiq_core: handle NULL result of find_service_by_handle In case of an invalid handle the function find_servive_by_handle returns NULL. So take care of this and avoid a NULL pointer dereference.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/04202f54dd8899e10f56a89c4c1ede0043fa22afhttps://git.kernel.org/stable/c/3b424f6586a870b8d657c5e5419465bbe0e7b61fhttps://git.kernel.org/stable/c/42f2142a337ee372455574809fc924580a7e51b2https://git.kernel.org/stable/c/aa0b7296785312a4bfa8fac0ba8ad78698fd9fcfhttps://git.kernel.org/stable/c/ca225857faf237234d2fffe5d1919467dfadd822
2025-02-26
Published