CVE-2022-50040

Source
https://cve.org/CVERecord?id=CVE-2022-50040
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50040.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-50040
Downstream
Related
Published
2025-06-18T11:01:41.420Z
Modified
2026-04-03T13:14:33.046477026Z
Summary
net: dsa: sja1105: fix buffer overflow in sja1105_setup_devlink_regions()
Details

In the Linux kernel, the following vulnerability has been resolved:

net: dsa: sja1105: fix buffer overflow in sja1105setupdevlink_regions()

If an error occurs in dsadevlinkregion_create(), then 'priv->regions' array will be accessed by negative index '-1'.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50040.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
bf425b82059e0b0752c0026353c1902112200837
Fixed
7983e1e44cb322eba6af84160b6d18df80603fb8
Fixed
e84c6321f3578c38cb3c24258db91a92672b17a8
Fixed
79f86b862416126a2e826cb74224180d6625a32f
Fixed
fd8e899cdb5ecaf8e8ee73854a99e10807eef1de

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50040.json"