PT-2024-8441 · Linux+4 · Linux Kernel+4
Published
2022-08-18
·
Updated
2025-09-29
·
CVE-2022-48696
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The issue is related to the regmap component in the Linux kernel, specifically with the spi module. The max raw read and max raw write limits in the regmap spi struct do not account for the additional size of the transmitted register address and padding, potentially exceeding the maximum permitted SPI message size and causing undefined behavior, such as data corruption. The function regmap get spi bus() has been fixed to properly adjust these limits by reserving space for the register address and padding as set in the regmap configuration.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Centos
Linux Kernel
Red Hat
Red Os