In the Linux kernel, the following vulnerability has been resolved:
media: s5pcec: limit msg.len to CECMAXMSGSIZE
I expect that the hardware will have limited this to 16, but just in case it hasn't, check for this corner case.
[
{
"id": "CVE-2022-49035-11f798b6",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/platform/s5p-cec/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@fc0f76dd5f116fa9291327024dda392f8b4e849c"
},
{
"id": "CVE-2022-49035-186731f4",
"deprecated": false,
"digest": {
"length": 1020.0,
"function_hash": "224375074937007550597677268629494942698"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/staging/media/s5p-cec/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a"
},
{
"id": "CVE-2022-49035-291c6447",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@93f65ce036863893c164ca410938e0968964b26c"
},
{
"id": "CVE-2022-49035-4bfdb9f7",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1609231f86760c1f6a429de7913dd795b9faa08c"
},
{
"id": "CVE-2022-49035-52be55e3",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1609231f86760c1f6a429de7913dd795b9faa08c"
},
{
"id": "CVE-2022-49035-6141d8e0",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd"
},
{
"id": "CVE-2022-49035-86bc8c33",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/platform/s5p-cec/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@fc0f76dd5f116fa9291327024dda392f8b4e849c"
},
{
"id": "CVE-2022-49035-8841b492",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/platform/s5p-cec/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4a449430ecfb199b99ba58af63c467eb53500b39"
},
{
"id": "CVE-2022-49035-9530bd1b",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/platform/s5p-cec/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4a449430ecfb199b99ba58af63c467eb53500b39"
},
{
"id": "CVE-2022-49035-b693a346",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4"
},
{
"id": "CVE-2022-49035-bdcbb9e4",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/platform/s5p-cec/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a2728bf9b6c65e46468c763e3dab7e04839d4e11"
},
{
"id": "CVE-2022-49035-c079f000",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/platform/s5p-cec/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a2728bf9b6c65e46468c763e3dab7e04839d4e11"
},
{
"id": "CVE-2022-49035-c12036e5",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@93f65ce036863893c164ca410938e0968964b26c"
},
{
"id": "CVE-2022-49035-db00a69b",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd"
},
{
"id": "CVE-2022-49035-e0cf9cc5",
"deprecated": false,
"digest": {
"line_hashes": [
"189386748859780271748631119428116838215",
"338007349029690167934184103863072303524",
"186622883650314891759303250029416714632",
"295589493021869254550462286188559380432"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "drivers/staging/media/s5p-cec/s5p_cec.c"
},
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a"
},
{
"id": "CVE-2022-49035-f2b85b5a",
"deprecated": false,
"digest": {
"length": 1141.0,
"function_hash": "334193846814856125009619166187909684693"
},
"signature_version": "v1",
"target": {
"function": "s5p_cec_irq_handler",
"file": "drivers/media/cec/platform/s5p/s5p_cec.c"
},
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4"
}
]