CVE-2022-49035

Source
https://cve.org/CVERecord?id=CVE-2022-49035
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49035.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49035
Downstream
Related
Published
2025-01-02T14:38:04.604Z
Modified
2026-04-11T12:43:28.227462Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE
Details

In the Linux kernel, the following vulnerability has been resolved:

media: s5pcec: limit msg.len to CECMAXMSGSIZE

I expect that the hardware will have limited this to 16, but just in case it hasn't, check for this corner case.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49035.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1bcbf6f4b6b050eaf8f1fb1adf5c4779a3623c5b
Fixed
7ccb40f26cbefa1c6dfd3418bea54c9518cdbd8a
Fixed
fc0f76dd5f116fa9291327024dda392f8b4e849c
Fixed
a2728bf9b6c65e46468c763e3dab7e04839d4e11
Fixed
4a449430ecfb199b99ba58af63c467eb53500b39
Fixed
1609231f86760c1f6a429de7913dd795b9faa08c
Fixed
cbfa26936f318b16ccf9ca31b8e8b30c0dc087bd
Fixed
2654e785bd4aa2439cdffbe7dc1ea30a0eddbfe4
Fixed
93f65ce036863893c164ca410938e0968964b26c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49035.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.8.0
Fixed
4.9.333
Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
4.14.299
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.265
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.224
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.154
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.78
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.0.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49035.json"