CVE-2022-49570
published 2025-02-26CVE-2022-49570: In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-xilinx: Fix integer overflow Current implementation is not able to configure…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
gpio: gpio-xilinx: Fix integer overflow
Current implementation is not able to configure more than 32 pins
due to incorrect data type. So type casting with unsigned long
to avoid it.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.18.16-1 (bookworm) | linux 5.18.16-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 02b3f84d9080b0f4297f31258307f626a43faba5 < e129e5486b981d324057e6986059f852658b0d00 | e129e5486b981d324057e6986059f852658b0d00 |
| linux | linux | >= 02b3f84d9080b0f4297f31258307f626a43faba5 < 6f16a5390640807dde420ee5ccbc4c95577aea6a | 6f16a5390640807dde420ee5ccbc4c95577aea6a |
| linux | linux | >= 02b3f84d9080b0f4297f31258307f626a43faba5 < 32c094a09d5829ad9b02cdf667569aefa8de0ea6 | 32c094a09d5829ad9b02cdf667569aefa8de0ea6 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.18.16-1 | 5.18.16-1 |
| linux | linux_kernel | >= 0 < 5.18.16-1 | 5.18.16-1 |
| linux | linux_kernel | >= 0 < 5.18.16-1 | 5.18.16-1 |
| linux | linux_kernel | >= 5.14 < 5.15.58 | 5.15.58 |
| linux | linux_kernel | >= 5.16 < 5.18.15 | 5.18.15 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9r36-ph2g-374v: In the Linux kernel, the following vulnerability has been resolved:
gpio: gpio-xilinx: Fix integer overflow
Current implementation is not able to co
ghsa_unreviewed·2025-03-10
CVE-2022-49570 [MEDIUM] CWE-190 GHSA-9r36-ph2g-374v: In the Linux kernel, the following vulnerability has been resolved:
gpio: gpio-xilinx: Fix integer overflow
Current implementation is not able to co
In the Linux kernel, the following vulnerability has been resolved:
gpio: gpio-xilinx: Fix integer overflow
Current implementation is not able to configure more than 32 pins
due to incorrect data type. So type casting with unsigned long
to avoid it.
OSV
CVE-2022-49570: In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-xilinx: Fix integer overflow Current implementation is not able to conf
osv·2025-02-26·CVSS 5.5
CVE-2022-49570 [MEDIUM] CVE-2022-49570: In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-xilinx: Fix integer overflow Current implementation is not able to conf
In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-xilinx: Fix integer overflow Current implementation is not able to configure more than 32 pins due to incorrect data type. So type casting with unsigned long to avoid it.
Red Hat
kernel: gpio: gpio-xilinx: Fix integer overflow
vendor_redhat·2025-02-26·CVSS 5.5
CVE-2022-49570 [MEDIUM] CWE-190 kernel: gpio: gpio-xilinx: Fix integer overflow
kernel: gpio: gpio-xilinx: Fix integer overflow
In the Linux kernel, the following vulnerability has been resolved:
gpio: gpio-xilinx: Fix integer overflow
Current implementation is not able to configure more than 32 pins
due to incorrect data type. So type casting with unsigned long
to avoid it.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Hat Enterprise Linux 9) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2022-49570: linux - In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-...
vendor_debian·2022·CVSS 5.5
CVE-2022-49570 [MEDIUM] CVE-2022-49570: linux - In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-...
In the Linux kernel, the following vulnerability has been resolved: gpio: gpio-xilinx: Fix integer overflow Current implementation is not able to configure more than 32 pins due to incorrect data type. So type casting with unsigned long to avoid it.
Scope: local
bookworm: resolved (fixed in 5.18.16-1)
bullseye: resolved
forky: resolved (fixed in 5.18.16-1)
sid: resolved (fixed in 5.18.16-1)
trixie: resolved (fixed in 5.18.16-1)
No detection rules found.
No public exploits indexed.
2025-02-26
Published