CVE-2022-49805
Published: May 1, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: net: lan966x: Fix potential null-ptr-deref in lan966x_stats_init() lan966x_stats_init() calls create_singlethread_workqueue() and not checked the ret value, which may return NULL. And a null-ptr-deref may happen: lan966x_stats_init() create_singlethread_workqueue() # failed, lan966x->stats_queue is NULL queue_delayed_work() queue_delayed_work_on() __queue_delayed_work() # warning here, but continue __queue_work() # access wq->flags, null-ptr-deref Check the ret value and return -ENOMEM if it is NULL.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 12c2d0a5b8e2a1afc8c7738e19a0d1dd7f3d4007 - < 4a43c1c6040e848e1344c7b16ac696b68fbc439caffected 12c2d0a5b8e2a1afc8c7738e19a0d1dd7f3d4007 - < ba86af3733aece88dbcee0dfebf7e2dcfefb2be4 |
Linux | Linux | affected 5.17unaffected 0 - < 5.17unaffected 6.0.10 - <= 6.0.*unaffected 6.1 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now