CVE-2022-50047

Source
https://cve.org/CVERecord?id=CVE-2022-50047
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50047.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-50047
Downstream
Related
Published
2025-06-18T11:01:48.080Z
Modified
2026-05-18T05:55:18.416540023Z
Summary
net: dsa: mv88e6060: prevent crash on an unused port
Details

In the Linux kernel, the following vulnerability has been resolved:

net: dsa: mv88e6060: prevent crash on an unused port

If the port isn't a CPU port nor a user port, 'cpudp' is a null pointer and a crash happened on dereferencing it in mv88e6060setup_port():

[ 9.575872] Unable to handle kernel NULL pointer dereference at virtual address 00000014 ... [ 9.942216] mv88e6060setup from dsaregisterswitch+0x814/0xe84 [ 9.948616] dsaregisterswitch from mdioprobe+0x2c/0x54 [ 9.954433] mdioprobe from reallyprobe.part.0+0x98/0x2a0 [ 9.960375] reallyprobe.part.0 from driverprobedevice+0x30/0x10c [ 9.967029] driverprobe_device from __deviceattachdriver+0xb8/0x13c [ 9.973946] __deviceattachdriver from busforeachdrv+0x90/0xe0 [ 9.980509] busforeachdrv from __device_attach+0x110/0x184 [ 9.986632] _deviceattach from busprobedevice+0x8c/0x94 [ 9.992577] busprobedevice from deferredprobeworkfunc+0x78/0xa8 [ 9.999311] deferredprobeworkfunc from processonework+0x290/0x73c [ 10.006292] processonework from workerthread+0x30/0x4b8 [ 10.012155] workerthread from kthread+0xd4/0x10c [ 10.017238] kthread from retfromfork+0x14/0x3c

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50047.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0abfd494deefdbab66ac03c1181a614285e7d90c
Fixed
cb1753bc689c7a7f94da6eee7efc1ae6d8abb36c
Fixed
92dc64e8f591425ce4dabf7d479ebf6e67fb8853
Fixed
dd236b62d25e44ecfa26b0910a12f8d8251aff00
Fixed
f3a4b55829617cad2d36fa6524367ef629566ba6
Fixed
246bbf2f977ea36aaf41f5d24370fef433250728

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50047.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
5.4.211
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.138
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.63
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.19.4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-50047.json"