CVE-2022-49375
published 2025-02-26CVE-2022-49375: In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397: check return value after calling platform_get_resource() It will cause…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.9th percentile
In the Linux kernel, the following vulnerability has been resolved:
rtc: mt6397: check return value after calling platform_get_resource()
It will cause null-ptr-deref if platform_get_resource() returns NULL,
we need check the return value.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.18.5-1 (bookworm) | linux 5.18.5-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < 3867f0bbb94773d41e789257abec0d14f37da217 | 3867f0bbb94773d41e789257abec0d14f37da217 |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < 79fa3f5758d8712df0678df98161f948fc4370e5 | 79fa3f5758d8712df0678df98161f948fc4370e5 |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < 6ecd4d5c28408df36a1a6f0b1973f633c949ac1f | 6ecd4d5c28408df36a1a6f0b1973f633c949ac1f |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < d77f28c1bc9d3043a52069fe42e4a26fbf961ebd | d77f28c1bc9d3043a52069fe42e4a26fbf961ebd |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < 82bfea344e8f7e9a0e0b1bf9af27552baa756620 | 82bfea344e8f7e9a0e0b1bf9af27552baa756620 |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < 865051de2d9eaa50630e055b73921ceaf3c4a7fc | 865051de2d9eaa50630e055b73921ceaf3c4a7fc |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < 58a729c55ce3a432eb827fdaa24c7909cd3b0a6b | 58a729c55ce3a432eb827fdaa24c7909cd3b0a6b |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < da38e86d6cf6dd3bc65c602d998f357145aa1a0b | da38e86d6cf6dd3bc65c602d998f357145aa1a0b |
| linux | linux | >= fc2979118f3f5193475cb53d5df7bdaa7e358a42 < d3b43eb505bffb8e4cdf6800c15660c001553fe6 | d3b43eb505bffb8e4cdf6800c15660c001553fe6 |
| linux | linux_kernel | >= 0 < 5.10.127-1 | 5.10.127-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 0 < 5.18.5-1 | 5.18.5-1 |
| linux | linux_kernel | >= 4.10 < 4.14.283 | 4.14.283 |
| linux | linux_kernel | >= 4.15 < 4.19.247 | 4.19.247 |
| linux | linux_kernel | >= 4.2 < 4.9.318 | 4.9.318 |
| linux | linux_kernel | >= 4.20 < 5.4.198 | 5.4.198 |
| linux | linux_kernel | >= 5.11 < 5.15.47 | 5.15.47 |
| linux | linux_kernel | >= 5.16 < 5.17.15 | 5.17.15 |
| linux | linux_kernel | >= 5.18 < 5.18.4 | 5.18.4 |
| linux | linux_kernel | >= 5.5 < 5.10.122 | 5.10.122 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: rtc: mt6397: check return value after calling platform_get_resource()
vendor_redhat·2025-02-26·CVSS 5.5
CVE-2022-49375 [MEDIUM] CWE-476 kernel: rtc: mt6397: check return value after calling platform_get_resource()
kernel: rtc: mt6397: check return value after calling platform_get_resource()
In the Linux kernel, the following vulnerability has been resolved:
rtc: mt6397: check return value after calling platform_get_resource()
It will cause null-ptr-deref if platform_get_resource() returns NULL,
we need check the return value.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9
Debian
CVE-2022-49375: linux - In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397...
vendor_debian·2022·CVSS 5.5
CVE-2022-49375 [MEDIUM] CVE-2022-49375: linux - In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397...
In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397: check return value after calling platform_get_resource() It will cause null-ptr-deref if platform_get_resource() returns NULL, we need check the return value.
Scope: local
bookworm: resolved (fixed in 5.18.5-1)
bullseye: resolved (fixed in 5.10.127-1)
forky: resolved (fixed in 5.18.5-1)
sid: resolved (fixed in 5.18.5-1)
trixie: resolved (fixed in 5.18.5-1)
GHSA
GHSA-9jjw-6883-wqjh: In the Linux kernel, the following vulnerability has been resolved:
rtc: mt6397: check return value after calling platform_get_resource()
It will ca
ghsa_unreviewed·2025-04-14
CVE-2022-49375 [MEDIUM] CWE-476 GHSA-9jjw-6883-wqjh: In the Linux kernel, the following vulnerability has been resolved:
rtc: mt6397: check return value after calling platform_get_resource()
It will ca
In the Linux kernel, the following vulnerability has been resolved:
rtc: mt6397: check return value after calling platform_get_resource()
It will cause null-ptr-deref if platform_get_resource() returns NULL,
we need check the return value.
OSV
CVE-2022-49375: In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397: check return value after calling platform_get_resource() It will caus
osv·2025-02-26·CVSS 5.5
CVE-2022-49375 [MEDIUM] CVE-2022-49375: In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397: check return value after calling platform_get_resource() It will caus
In the Linux kernel, the following vulnerability has been resolved: rtc: mt6397: check return value after calling platform_get_resource() It will cause null-ptr-deref if platform_get_resource() returns NULL, we need check the return value.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://git.kernel.org/stable/c/3867f0bbb94773d41e789257abec0d14f37da217https://git.kernel.org/stable/c/58a729c55ce3a432eb827fdaa24c7909cd3b0a6bhttps://git.kernel.org/stable/c/6ecd4d5c28408df36a1a6f0b1973f633c949ac1fhttps://git.kernel.org/stable/c/79fa3f5758d8712df0678df98161f948fc4370e5https://git.kernel.org/stable/c/82bfea344e8f7e9a0e0b1bf9af27552baa756620https://git.kernel.org/stable/c/865051de2d9eaa50630e055b73921ceaf3c4a7fchttps://git.kernel.org/stable/c/d3b43eb505bffb8e4cdf6800c15660c001553fe6https://git.kernel.org/stable/c/d77f28c1bc9d3043a52069fe42e4a26fbf961ebdhttps://git.kernel.org/stable/c/da38e86d6cf6dd3bc65c602d998f357145aa1a0b
2025-02-26
Published