CVE Database
/

CVE-2022-49581

Back to search

CVE-2022-49581

Published: Feb 26, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: be2net: Fix buffer overflow in be_get_module_eeprom be_cmd_read_port_transceiver_data assumes that it is given a buffer that is at least PAGE_DATA_LEN long, or twice that if the module supports SFF 8472. However, this is not always the case. Fix this by passing the desired offset and length to be_cmd_read_port_transceiver_data so that we only copy the bytes once.

VendorProductVersions

Linux

Linux

affected
e36edd9d26cf257511548edaf2b7a56eb4fed854 - < a5a8fc0679a8fd58d47aa2ebcfc5742631f753f9
affected
e36edd9d26cf257511548edaf2b7a56eb4fed854 - < fe4473fc7940f14c4a12db873b9729134c212654
affected
e36edd9d26cf257511548edaf2b7a56eb4fed854 - < 8ff4f9df73e5c551a72ee6034886c17e8de6596d
affected
e36edd9d26cf257511548edaf2b7a56eb4fed854 - < a8569f76df7ec5b4b51155c57523a0b356db5741
affected
e36edd9d26cf257511548edaf2b7a56eb4fed854 - < 665cbe91de2f7c97c51ca8fce39aae26477c1948

+3 more versions

Linux

Linux

affected
3.18
unaffected
0 - < 3.18
unaffected
4.9.325 - <= 4.9.*
unaffected
4.14.290 - <= 4.14.*
unaffected
4.19.254 - <= 4.19.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now