CVE-2022-49145

Source
https://cve.org/CVERecord?id=CVE-2022-49145
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49145.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49145
Downstream
Related
Published
2025-02-26T01:55:14.355Z
Modified
2026-04-11T12:43:37.473332Z
Summary
ACPI: CPPC: Avoid out of bounds access when parsing _CPC data
Details

In the Linux kernel, the following vulnerability has been resolved:

ACPI: CPPC: Avoid out of bounds access when parsing _CPC data

If the NumEntries field in the _CPC return package is less than 2, do not attempt to access the "Revision" element of that package, because it may not be present then.

BugLink: https://lore.kernel.org/lkml/20220322143534.GC32582@xsang-OptiPlex-9020/

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49145.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
337aadff8e4567e39669e07d9a88b789d78458b5
Fixed
b3f15609ffa521de12244cd6af24002030dda3f5
Fixed
d208ea44e25b31db5a4d5e8c31df51787a3e9303
Fixed
28d5387c1994f5e1e0d41b30a1f3dd6e1f609252
Fixed
cb249f8c00f40dba83b7da8207ac14ca46e9ec9e
Fixed
e5b681822cac1f8093759b02e16c06b2c64b6788
Fixed
97b5593fd1b182b3fdb180b6bbe64ec09669988b
Fixed
b80b19b32a432c9eee1cd200ef7aaddf608f54d1
Fixed
d7339f2a3938fb56b5f28d53f5345900b5fa0e74
Fixed
40d8abf364bcab23bc715a9221a3c8623956257b

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49145.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.4.0
Fixed
4.9.311
Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
4.14.276
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.238
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.189
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.110
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.33
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.16.19
Type
ECOSYSTEM
Events
Introduced
5.17.0
Fixed
5.17.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49145.json"