CVE-2022-50722 — Linux vulnerability
7 documents6 sources
Severity
—N/A
No vectorEPSS
0.0%
top 93.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Description
In the Linux kernel, the following vulnerability has been resolved:
media: ipu3-imgu: Fix NULL pointer dereference in active selection access
What the IMGU driver did was that it first acquired the pointers to active
and try V4L2 subdev state, and only then figured out which one to use.
The problem with that approach and a later patch (see Fixes: tag) is that
as sd_state argument to v4l2_subdev_get_try_crop() et al is NULL, there is
now an attempt to dereference that.
Fix this.
Also rewrap …
Affected Packages4 packages
▶CVEListV5linux/linux0d346d2a6f54f06f36b224fd27cd6eafe8c83be9 — 5265cc1202a31f7097691c3483a0d60d624424a5+3
🔴Vulnerability Details
3OSV▶
CVE-2022-50722: In the Linux kernel, the following vulnerability has been resolved: media: ipu3-imgu: Fix NULL pointer dereference in active selection access What the↗2025-12-24
GHSA▶
GHSA-vpqj-28g2-5g9m: In the Linux kernel, the following vulnerability has been resolved:
media: ipu3-imgu: Fix NULL pointer dereference in active selection access
What t↗2025-12-24