CVE-2022-48696

I

n the Linux kernel, the following vulnerability has been resolved: regmap: spi: Reserve space for register address/padding Currently the max_raw_read and max_raw_write limits in regmap_spi struct do not take into account the additional size of the transmitted register address and padding. This may result in exceeding the maximum permitted SPI message size, which could cause undefined behaviour, e.g. data corruption. Fix regmap_get_spi_bus() to properly adjust the above mentioned limits by reserving space for the register address/padding as set in the regmap configuration.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc4:*:*:*:*:*:*

History

08 Apr 2025, 15:50

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:6.0:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.0:rc4:*:*:*:*:*:*
References () https://git.kernel.org/stable/c/15ff1f17847c19174b260bd7dd0de33edcebd45e - () https://git.kernel.org/stable/c/15ff1f17847c19174b260bd7dd0de33edcebd45e - Patch
References () https://git.kernel.org/stable/c/f5723cfc01932c7a8d5c78dbf7e067e537c91439 - () https://git.kernel.org/stable/c/f5723cfc01932c7a8d5c78dbf7e067e537c91439 - Patch
First Time Linux linux Kernel
Linux

21 Nov 2024, 07:33

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/15ff1f17847c19174b260bd7dd0de33edcebd45e - () https://git.kernel.org/stable/c/15ff1f17847c19174b260bd7dd0de33edcebd45e -
References () https://git.kernel.org/stable/c/f5723cfc01932c7a8d5c78dbf7e067e537c91439 - () https://git.kernel.org/stable/c/f5723cfc01932c7a8d5c78dbf7e067e537c91439 -

20 Nov 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-120

06 May 2024, 12:44

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-03 16:15

Updated : 2025-04-08 15:50


NVD link : CVE-2022-48696

Mitre link : CVE-2022-48696

CVE.ORG link : CVE-2022-48696


JSON object : View

Products Affected
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')