CVE-2022-49475

Source
https://cve.org/CVERecord?id=CVE-2022-49475
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49475.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-49475
Downstream
Related
Published
2025-02-26T02:13:17.353Z
Modified
2026-07-15T01:49:02.433605215Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
spi: spi-fsl-qspi: check return value after calling platform_get_resource_byname()
Details

In the Linux kernel, the following vulnerability has been resolved:

spi: spi-fsl-qspi: check return value after calling platformgetresource_byname()

It will cause null-ptr-deref if platformgetresource_byname() returns NULL, we need check the return value.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49475.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
858e26a515c28df3ef542d9c09493b54a329d6cf
Fixed
560dcbe1c7a78f597f2167371ebdbe2bca3d0735
Fixed
10f537219629769498ecb8515e096be213224c24
Fixed
33dda87d04598ac5d9a849218a373443f7d3de66
Fixed
9d9c84825c3ec359b165c762a424cfdefe87fdd7
Fixed
a2b331ac11e1cac56f5b7d367e9f3c5796deaaed

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49475.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.8.0
Fixed
5.10.121
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.46
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.17.14
Type
ECOSYSTEM
Events
Introduced
5.18.0
Fixed
5.18.3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49475.json"