cbcvebase.
CVE-2022-49250
published 2025-02-26

CVE-2022-49250: In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: rx-macro: fix accessing compander for aux AUX interpolator does not have…

PriorityP429high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.26%
18.0th percentile
In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: rx-macro: fix accessing compander for aux AUX interpolator does not have compander, so check before accessing compander data for this. Without this checkan array of out bounds access will be made in comp_enabled[] array.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.17.3-1 (bookworm)linux 5.17.3-1 (bookworm)
linuxlinux
linuxlinux>= 4f692926f562ff48abfcca6b16f36ff8d57473b6 < 9208ecc703b5ed5b12d7ea13c79207f4c84566389208ecc703b5ed5b12d7ea13c79207f4c8456638
linuxlinux>= 4f692926f562ff48abfcca6b16f36ff8d57473b6 < 87a2b44cb3005d30c3a72234d1e47b03ae3bb29a87a2b44cb3005d30c3a72234d1e47b03ae3bb29a
linuxlinux>= 4f692926f562ff48abfcca6b16f36ff8d57473b6 < 6aa8ef9535dbd561293406608ebe791627b101966aa8ef9535dbd561293406608ebe791627b10196
linuxlinux>= 4f692926f562ff48abfcca6b16f36ff8d57473b6 < 42c709c4e1ce4c136891530646c9abd5dff3524f42c709c4e1ce4c136891530646c9abd5dff3524f
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 5.12 < 5.15.335.15.33
linuxlinux_kernel>= 5.16 < 5.16.195.16.19
linuxlinux_kernel>= 5.17 < 5.17.25.17.2

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.