Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: net: dsa: felix: fix possible NULL pointer dereference As the possible failure of the allocation, kzalloc() may return NULL pointer. Therefore, it should be better to check the 'sgi' in order to prevent the dereference of NULL pointer.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.17, < 5.17.3 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/866b7a278cdb51eb158cd8513bc7438fc857804aPatch
- https://git.kernel.org/stable/c/b7ff8b5e75d4e91ec8c62d621aac8dfb84c57aa9Patch
FAQ
What is CVE-2022-49141?
CVE-2022-49141 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: net: dsa: felix: fix possible NULL pointer dereference As the possible failure of the allocation, kzalloc() may return NULL pointe...
How severe is CVE-2022-49141?
CVE-2022-49141 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-49141?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.