PT-2022-32923 · Linux · Linux Kernel

Published

2022-07-31

·

Updated

2022-07-31

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux Kernel versions prior to v5.4.208
Description The issue is related to a NULL pointer dereference in the bcm2835 spi handle err() function for non-DMA transfers. This problem was introduced in Linux Kernel version v5.4 and is fixed in version v5.4.208. The actual impact and attack plausibility have not yet been proven.
Recommendations For Linux Kernel versions prior to v5.4.208, update to version v5.4.208 or later to resolve the issue. As a temporary workaround, consider restricting access to the spi interface to minimize the risk of exploitation.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

GSD-2022-1004661

Affected Products

Linux Kernel