CVE-2022-49061

Source
https://cve.org/CVERecord?id=CVE-2022-49061
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49061.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49061
Downstream
Related
Published
2025-02-26T01:54:31.142Z
Modified
2026-03-20T12:22:07.984572Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
net: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-link
Details

In the Linux kernel, the following vulnerability has been resolved:

net: ethernet: stmmac: fix altrtsepcs function when using a fixed-link

When using a fixed-link, the altrtsepcs driver crashes due to null-pointer dereference as no phydevice is provided to tsepcsfixmacspeed function. Fix this by adding a check for phydev before calling the tsepcsfixmacspeed() function.

Also clean up the tsepcsfixmacspeed function a bit. There is no need to check for splitterbase and sgmiiadapter_base because the driver will fail if these 2 variables are not derived from the device tree.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49061.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
fb3bbdb859891e6bc27fd1afb3a07319f82c2ee4
Fixed
7e59fdf9547c4f948d1d917ec7ffa5fb5ac53bdb
Fixed
08d5e3e954537931c8da7428034808d202e98299
Fixed
62a48383ebe2e159fd68425dd3e16d4c6bd6599a
Fixed
6c020f05253df04c3480b586fe188a3582740049
Fixed
a6aaa00324240967272b451bfa772547bd576ee6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49061.json"