CVE-2022-50614Improper Handling of Length Parameter Inconsistency in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 89.95%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 8

Description

In the Linux kernel, the following vulnerability has been resolved: misc: pci_endpoint_test: Fix pci_endpoint_test_{copy,write,read}() panic The dma_map_single() doesn't permit zero length mapping. It causes a follow panic. A panic was reported on arm64: [ 60.137988] ------------[ cut here ]------------ [ 60.142630] kernel BUG at kernel/dma/swiotlb.c:624! [ 60.147508] Internal error: Oops - BUG: 0 [#1] PREEMPT SMP [ 60.152992] Modules linked in: dw_hdmi_cec crct10dif_ce simple_bridge rcar_fd

Affected Packages4 packages

Linuxlinux/linux_kernel4.15.05.10.148+3
Debianlinux/linux_kernel< 5.10.148-1+3
CVEListV5linux/linux343dc693f7b79885197f9d37dd8b711b0e3ffc8f0df206bdc6204b758585bbe159a55e23e7917b13+5
debiandebian/linux< linux 6.0.2-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2022-50614: In the Linux kernel, the following vulnerability has been resolved: misc: pci_endpoint_test: Fix pci_endpoint_test_{copy,write,read}() panic The dma_m2025-12-08
OSV
misc: pci_endpoint_test: Fix pci_endpoint_test_{copy,write,read}() panic2025-12-08
GHSA
GHSA-3xmp-jf8j-rjxp: In the Linux kernel, the following vulnerability has been resolved: misc: pci_endpoint_test: Fix pci_endpoint_test_{copy,write,read}() panic The dma2025-12-08

📋Vendor Advisories

2
Red Hat
kernel: Kernel: Denial of Service in pci_endpoint_test due to zero-length DMA mapping2025-12-08
Debian
CVE-2022-50614: linux - In the Linux kernel, the following vulnerability has been resolved: misc: pci_e...2022