Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc The allocation funciton devm_kcalloc may fail and return a null pointer, which would cause a null-pointer dereference later. It might be better to check it and directly return -ENOMEM just like the usage of devm_kcalloc in previous code.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 5.10.121 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/01ba41a359622ab256ce4d4f8b94c67165ae3dafPatch
- https://git.kernel.org/stable/c/05efc4591f80582b6fe53366b70b6a35a42fd255Patch
- https://git.kernel.org/stable/c/7cef9274fa1b8506949d74bc45aef072b890824aPatch
- https://git.kernel.org/stable/c/ba56291e297d28aa6eb82c5c1964fae2d7594746Patch
- https://git.kernel.org/stable/c/c4e188869406b47ac3350920bf165be303cb1c96Patch
FAQ
What is CVE-2022-49453?
CVE-2022-49453 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc The allocation funciton devm_kcalloc may fail and return a null ...
How severe is CVE-2022-49453?
CVE-2022-49453 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-49453?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.