cbcvebase.
CVE-2022-49254
published 2025-02-26

CVE-2022-49254: In the Linux kernel, the following vulnerability has been resolved: media: ti-vpe: cal: Fix a NULL pointer dereference in cal_ctx_v4l2_init_formats() In…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
18.0th percentile
In the Linux kernel, the following vulnerability has been resolved: media: ti-vpe: cal: Fix a NULL pointer dereference in cal_ctx_v4l2_init_formats() In cal_ctx_v4l2_init_formats(), devm_kzalloc() is assigned to ctx->active_fmt and there is a dereference of it after that, which could lead to NULL pointer dereference on failure of devm_kzalloc(). Fix this bug by adding a NULL check of ctx->active_fmt. This bug was found by a static analyzer. Builds with 'make allyesconfig' show no new warnings, and our static analyzer no longer warns about this code.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 5.17.3-1 (bookworm)linux 5.17.3-1 (bookworm)
linuxlinux
linuxlinux>= 7168155002cf7aadbfaa14a28f037c880a214764 < aa613ac270292e102503e9767882e39200efe608aa613ac270292e102503e9767882e39200efe608
linuxlinux>= 7168155002cf7aadbfaa14a28f037c880a214764 < 91e2805579ab0783eed53acc2bf9fb553e93900491e2805579ab0783eed53acc2bf9fb553e939004
linuxlinux>= 7168155002cf7aadbfaa14a28f037c880a214764 < 1381f1a629a090c251965edb56f849ad648414a41381f1a629a090c251965edb56f849ad648414a4
linuxlinux>= 7168155002cf7aadbfaa14a28f037c880a214764 < abd77889851d2ead0d0c9c4d29f1808801477b00abd77889851d2ead0d0c9c4d29f1808801477b00
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 0 < 5.17.3-15.17.3-1
linuxlinux_kernel>= 5.12 < 5.15.335.15.33
linuxlinux_kernel>= 5.16 < 5.16.195.16.19
linuxlinux_kernel>= 5.17 < 5.17.25.17.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.