iio:健康:afe4404:修复 afe4404_[read|write]_raw 中的 oob 读取 (CVE-2022-49032)

admin 2024-10-25 00:51:33 Ali_nvd 来源:ZONE.CI 全球网 0 阅读模式
iio:健康:afe4404:修复 afe4404_[read|write]_raw 中的 oob 读取 (CVE-2022-49032)

CVE编号

CVE-2022-49032

利用情况

暂无

补丁情况

N/A

披露时间

2024-10-22
漏洞描述
In the Linux kernel, the following vulnerability has been resolved: iio: health: afe4404: Fix oob read in afe4404_[read|write]_raw KASAN report out-of-bounds read as follows: BUG: KASAN: global-out-of-bounds in afe4404_read_raw+0x2ce/0x380 Read of size 4 at addr ffffffffc00e4658 by task cat/278 Call Trace: afe4404_read_raw iio_read_channel_info dev_attr_show The buggy address belongs to the variable: afe4404_channel_leds+0x18/0xffffffffffffe9c0 This issue can be reproduce by singe command: $ cat /sys/bus/i2c/devices/0-0058/iio\:device0/in_intensity6_raw The array size of afe4404_channel_leds and afe4404_channel_offdacs are less than channels, so access with chan->address cause OOB read in afe4404_[read|write]_raw. Fix it by moving access before use them.
解决建议
建议您更新当前系统或软件至最新版,完成漏洞的修复。
参考链接
https://git.kernel.org/stable/c/113c08030a89aaf406f8a1d4549d758a67c2afba
https://git.kernel.org/stable/c/3f566b626029ca8598d48e5074e56bb37399ca1b
https://git.kernel.org/stable/c/5eb114f55b37dbc0487aa9c1913b81bb7837f1c4
https://git.kernel.org/stable/c/68de7da092f38395dde523f2e5db26eba6c23e28
https://git.kernel.org/stable/c/d45d9f45e7b1365fd0d9bf14680d6d5082a590d1
https://git.kernel.org/stable/c/f5575041ec15310bdc50c42b8b22118cc900226e
https://git.kernel.org/stable/c/f7419fc42afc035f6b29ce713e17dcd2000c833f
https://git.kernel.org/stable/c/fc92d9e3de0b2d30a3ccc08048a5fad533e4672b
受影响软件情况
# 类型 厂商 产品 版本 影响面
1
运行在以下环境
系统 debian_11 linux * Up to (excluding) 5.10.158-1
运行在以下环境
系统 debian_12 linux * Up to (excluding) 6.0.12-1
CVSS3评分 N/A
  • 攻击路径 N/A
  • 攻击复杂度 N/A
  • 权限要求 N/A
  • 影响范围 N/A
  • 用户交互 N/A
  • 可用性 N/A
  • 保密性 N/A
  • 完整性 N/A
N/A
CWE-ID 漏洞类型
- avd.aliyun.com
weinxin
版权声明
本站原创文章转载请注明文章出处及链接,谢谢合作!
评论:0   参与:  0