CVE-2022-48696
גבוהה 7.1
תיאור (מקור, אנגלית)
In the Linux kernel, the following vulnerability has been resolved: regmap: spi: Reserve space for register address/padding Currently the max_raw_read and max_raw_write limits in regmap_spi struct do not take into account the additional size of the transmitted register address and padding. This may result in exceeding the maximum permitted SPI message size, which could cause undefined behaviour, e.g. data corruption. Fix regmap_get_spi_bus() to properly adjust the above mentioned limits by reserving space for the register address/padding as set in the regmap configuration.
מדדים
- CVSS 3.1
-
7.1 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-18/9/2026
- CWE
- CWE-120
מוצרים מושפעים
linux: linux kernel
קישורים
- https://git.kernel.org/stable/c/15ff1f17847c19174b260bd7dd0de33edcebd45e Patch
- https://git.kernel.org/stable/c/f5723cfc01932c7a8d5c78dbf7e067e537c91439 Patch
- https://git.kernel.org/stable/c/15ff1f17847c19174b260bd7dd0de33edcebd45e Patch
- https://git.kernel.org/stable/c/f5723cfc01932c7a8d5c78dbf7e067e537c91439 Patch