CVE-2022-49527

Source
https://cve.org/CVERecord?id=CVE-2022-49527
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49527.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49527
Downstream
Related
Published
2025-02-26T02:13:49.627Z
Modified
2026-04-11T12:44:10.908194Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
media: venus: hfi: avoid null dereference in deinit
Details

In the Linux kernel, the following vulnerability has been resolved:

media: venus: hfi: avoid null dereference in deinit

If venusprobe fails at pmruntimeputsync the error handling first calls hfidestroy and afterwards hficoredeinit. As hfidestroy sets core->ops to NULL, hficoredeinit cannot call the core_deinit function anymore.

Avoid this null pointer derefence by skipping the call when necessary.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49527.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
09c2845e8fe4fcab942929480203f504a6e0a114
Fixed
2533acb652359c9e097dfa33587896af782e8a91
Fixed
a21d15dde21d7e8ae047eb8368677407db45d840
Fixed
0ac84ab50712879eac3c1dd2598440652a85d3d0
Fixed
27ad46da44177a78a4a0cae6fe03906888c61aa1
Fixed
9c385b961d4c378228e80f6abea8509cb67feab6
Fixed
0ed5a643b1a4a46b9b7bfba5d468c10cc30e1359
Fixed
b73ed0510bb8d9647cd8e8a4c4c8772bbe545c3a
Fixed
86594f6af867b5165d2ba7b5a71fae3a5961e56c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49527.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.13.0
Fixed
4.14.283
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.247
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.198
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.121
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.46
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.17.14
Type
ECOSYSTEM
Events
Introduced
5.18.0
Fixed
5.18.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49527.json"