PT-2022-6528 · Linux · Linux Kernel

Cathy Hu

·

Published

2022-12-05

·

Updated

2024-04-12

·

CVE-2022-40540

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description The issue is related to a buffer copy without checking the size of input, which can lead to memory corruption. This can occur while loading firmware in the Linux Kernel. The exploitation of this issue may allow an attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-02028
CVE-2022-40540

Affected Products

Linux Kernel