2024-10-21 22:03:30 +00:00
{
"id" : "CVE-2022-49005" ,
"sourceIdentifier" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"published" : "2024-10-21T20:15:12.040" ,
2024-10-25 16:03:30 +00:00
"lastModified" : "2024-10-25T14:17:56.817" ,
"vulnStatus" : "Analyzed" ,
2024-10-21 22:03:30 +00:00
"cveTags" : [ ] ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "In the Linux kernel, the following vulnerability has been resolved:\n\nASoC: ops: Fix bounds check for _sx controls\n\nFor _sx controls the semantics of the max field is not the usual one, max\nis the number of steps rather than the maximum value. This means that our\ncheck in snd_soc_put_volsw_sx() needs to just check against the maximum\nvalue."
2024-10-23 16:03:56 +00:00
} ,
{
"lang" : "es" ,
"value" : "En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: ASoC: ops: Fix bounds check for _sx controls Para los controles _sx, la sem\u00e1ntica del campo max no es la habitual, max es el n\u00famero de pasos en lugar del valor m\u00e1ximo. Esto significa que nuestra comprobaci\u00f3n en snd_soc_put_volsw_sx() solo debe comprobarse con el valor m\u00e1ximo."
2024-10-21 22:03:30 +00:00
}
] ,
2024-10-25 16:03:30 +00:00
"metrics" : {
"cvssMetricV31" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" ,
"attackVector" : "LOCAL" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "LOW" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "NONE" ,
"availabilityImpact" : "HIGH" ,
"baseScore" : 5.5 ,
"baseSeverity" : "MEDIUM"
} ,
"exploitabilityScore" : 1.8 ,
"impactScore" : 3.6
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "4.9.300" ,
"versionEndExcluding" : "4.9.335" ,
"matchCriteriaId" : "2F7DD4C9-FE19-497E-B2F9-C094A69EFDFD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "4.14.265" ,
"versionEndExcluding" : "4.14.301" ,
"matchCriteriaId" : "7BC661F9-672A-422C-A1AE-66BB70C1815E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "4.19.228" ,
"versionEndExcluding" : "4.19.268" ,
"matchCriteriaId" : "7B9A6578-30BB-46F2-A669-96F6F8030A4B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "5.4.178" ,
"versionEndExcluding" : "5.4.226" ,
"matchCriteriaId" : "A2867EFB-E39E-448E-9A07-D268C880E4C8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "5.10.99" ,
"versionEndExcluding" : "5.10.158" ,
"matchCriteriaId" : "C8E48E4E-390B-49DD-9AEC-B0000F048AAB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "5.15.22" ,
"versionEndExcluding" : "5.15.82" ,
"matchCriteriaId" : "17C8626C-FF3E-4843-971D-4998D55BD5A9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "5.16.8" ,
"versionEndExcluding" : "5.17" ,
"matchCriteriaId" : "75F55BC5-65F9-43AF-BE7B-5C16E5F52E0B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*" ,
"versionStartIncluding" : "5.17" ,
"versionEndExcluding" : "6.0.12" ,
"matchCriteriaId" : "0FEB9103-AAEF-499A-A71B-752143D3A506"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "E7E331DA-1FB0-4DEC-91AC-7DA69D461C11"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc2:*:*:*:*:*:*" ,
"matchCriteriaId" : "17F0B248-42CF-4AE6-A469-BB1BAE7F4705"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc3:*:*:*:*:*:*" ,
"matchCriteriaId" : "E2422816-0C14-4B5E-A1E6-A9D776E5C49B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc4:*:*:*:*:*:*" ,
"matchCriteriaId" : "1C6E00FE-5FB9-4D20-A1A1-5A32128F9B76"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc5:*:*:*:*:*:*" ,
"matchCriteriaId" : "35B26BE4-43A6-4A36-A7F6-5B3F572D9186"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc6:*:*:*:*:*:*" ,
"matchCriteriaId" : "3FFFB0B3-930D-408A-91E2-BAE0C2715D80"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:linux:linux_kernel:6.1:rc7:*:*:*:*:*:*" ,
"matchCriteriaId" : "8535320E-A0DB-4277-800E-D0CE5BBA59E8"
}
]
}
]
}
] ,
2024-10-21 22:03:30 +00:00
"references" : [
{
"url" : "https://git.kernel.org/stable/c/325d94d16e3131b54bdf07356e4cd855e0d853fc" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/46bab25cc0230df60d1c02b651cc5640a14b08df" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/4a95a49f26308782b4056401989ecd7768fda8fa" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/698813ba8c580efb356ace8dbf55f61dac6063a8" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/73dce3c1d48c4662bdf3ccbde1492c2cb4bfd8ce" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/98b15c706644bebc19d2e77ccc360cc51444f6d0" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/b50c9641897274c3faef5f95ac852f54b94be2e8" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/e46adadf19248d59af3aa6bc52e09115bf479bf7" ,
2024-10-25 16:03:30 +00:00
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"tags" : [
"Patch"
]
2024-10-21 22:03:30 +00:00
}
]
}