Логотип exploitDog
bind: "CVE-2022-39842"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-39842"

Количество 8

Количество 8

ubuntu логотип

CVE-2022-39842

почти 3 года назад

** DISPUTED ** An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2022-39842

около 3 лет назад

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2022-39842

почти 3 года назад

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2022-39842

почти 3 года назад

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2022-39842

почти 3 года назад

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-8cq9-p78m-67v8

почти 3 года назад

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2022-05539

почти 3 года назад

Уязвимость функции pxa3xx_gcu_write ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Низкий
redos логотип

ROS-20221220-01

больше 2 лет назад

Множественные уязвимости ядра ОС

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-39842

** DISPUTED ** An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.

CVSS3: 6.1
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2022-39842

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.

CVSS3: 6.1
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-39842

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.

CVSS3: 6.1
0%
Низкий
почти 3 года назад
msrc логотип
CVSS3: 6.1
0%
Низкий
почти 3 года назад
debian логотип
CVE-2022-39842

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu ...

CVSS3: 6.1
0%
Низкий
почти 3 года назад
github логотип
GHSA-8cq9-p78m-67v8

An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur.

CVSS3: 7.8
0%
Низкий
почти 3 года назад
fstec логотип
BDU:2022-05539

Уязвимость функции pxa3xx_gcu_write ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
0%
Низкий
почти 3 года назад
redos логотип
ROS-20221220-01

Множественные уязвимости ядра ОС

CVSS3: 9.8
больше 2 лет назад

Уязвимостей на страницу