Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix size validation for non-exclusive domains (v4) Fix amdgpu_bo_validate_size() to check whether the TTM domain manager for the requested memory exists, else we get a kernel oops when dereferencing "man". v2: Make the patch standalone, i.e. not dependent on local patches. v3: Preserve old behaviour and just check that the manager pointer is not NULL. v4: Complain if GTT domain requested and it is uninitialized--most likely a bug.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 4.2, < 6.0.19 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/7554886daa31eacc8e7fac9e15bbce67d10b8f1fPatch
- https://git.kernel.org/stable/c/80546eef216854a7bd47e39e828f04b406c00599Patch
- https://git.kernel.org/stable/c/8ba7c55e112f4ffd2a95b99be1cb1c891ef08ba1Patch
FAQ
What is CVE-2022-50527?
CVE-2022-50527 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix size validation for non-exclusive domains (v4) Fix amdgpu_bo_validate_size() to check whether the TTM domain manag...
How severe is CVE-2022-50527?
CVE-2022-50527 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-50527?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.