CVE-2022-50399

Source
https://cve.org/CVERecord?id=CVE-2022-50399
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50399.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-50399
Downstream
Related
Published
2025-09-18T13:33:16.647Z
Modified
2026-07-15T01:48:52.442645815Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
media: atomisp: prevent integer overflow in sh_css_set_black_frame()
Details

In the Linux kernel, the following vulnerability has been resolved:

media: atomisp: prevent integer overflow in shcsssetblackframe()

The "height" and "width" values come from the user so the "height * width" multiplication can overflow.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50399.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a49d25364dfb9f8a64037488a39ab1f56c5fa419
Fixed
51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
ad85094b293e40e7a2f831b0311a389d952ebd5e
Fixed
a560aeac2f2d284903b5900774765d7fc61547bc
Fixed
a549517e4b761f3940011db30320cb8c9badde54
Fixed
3ad290194bb06979367622e47357462836c1d3b4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50399.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.12.0
Fixed
4.18
Type
ECOSYSTEM
Events
Introduced
5.8.0
Fixed
5.15.77
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.0.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50399.json"