CVE Database
/

CVE-2022-49805

Back to search

CVE-2022-49805

Published: May 1, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net: lan966x: Fix potential null-ptr-deref in lan966x_stats_init() lan966x_stats_init() calls create_singlethread_workqueue() and not checked the ret value, which may return NULL. And a null-ptr-deref may happen: lan966x_stats_init() create_singlethread_workqueue() # failed, lan966x->stats_queue is NULL queue_delayed_work() queue_delayed_work_on() __queue_delayed_work() # warning here, but continue __queue_work() # access wq->flags, null-ptr-deref Check the ret value and return -ENOMEM if it is NULL.

VendorProductVersions

Linux

Linux

affected
12c2d0a5b8e2a1afc8c7738e19a0d1dd7f3d4007 - < 4a43c1c6040e848e1344c7b16ac696b68fbc439c
affected
12c2d0a5b8e2a1afc8c7738e19a0d1dd7f3d4007 - < ba86af3733aece88dbcee0dfebf7e2dcfefb2be4

Linux

Linux

affected
5.17
unaffected
0 - < 5.17
unaffected
6.0.10 - <= 6.0.*
unaffected
6.1 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2022-49805 - Security Vulnerability | QwikSec