CVE-2022-49952

Source
https://cve.org/CVERecord?id=CVE-2022-49952
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49952.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49952
Downstream
Related
Published
2025-06-18T11:00:15.434Z
Modified
2026-05-18T05:56:22.118104382Z
Summary
misc: fastrpc: fix memory corruption on probe
Details

In the Linux kernel, the following vulnerability has been resolved:

misc: fastrpc: fix memory corruption on probe

Add the missing sanity check on the probed-session count to avoid corrupting memory beyond the fixed-size slab-allocated session array when there are more than FASTRPCMAXSESSIONS sessions defined in the devicetree.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49952.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f6f9279f2bf0e37e2f1fb119d8832b8568536a04
Fixed
ec186b9f4aa2e6444d5308a6cc268aada7007639
Fixed
c99bc901d5eb9fbdd7bd39f625e170ce97390336
Fixed
0e33b0f322fecd7a92d9dc186535cdf97940a856
Fixed
c0425c2facd9166fa083f90c9f3187ace0c7837a
Fixed
9baa1415d9abdd1e08362ea2dcfadfacee8690b5

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49952.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.1.0
Fixed
5.4.213
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.142
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.66
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.19.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49952.json"