CVE Database
/

CVE-2022-49806

Back to search

CVE-2022-49806

Published: May 1, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: net: microchip: sparx5: Fix potential null-ptr-deref in sparx_stats_init() and sparx5_start() sparx_stats_init() calls create_singlethread_workqueue() and not checked the ret value, which may return NULL. And a null-ptr-deref may happen: sparx_stats_init() create_singlethread_workqueue() # failed, sparx5->stats_queue is NULL queue_delayed_work() queue_delayed_work_on() __queue_delayed_work() # warning here, but continue __queue_work() # access wq->flags, null-ptr-deref Check the ret value and return -ENOMEM if it is NULL. So as sparx5_start().

VendorProductVersions

Linux

Linux

affected
b37a1bae742f92cc9b1f777d54e04ee3d86bbfc2 - < 80e590aeb132887102c3fa79d99b338f099dc952
affected
b37a1bae742f92cc9b1f777d54e04ee3d86bbfc2 - < 456327e565dc49d18b2f595f39f47df8a36f1057
affected
b37a1bae742f92cc9b1f777d54e04ee3d86bbfc2 - < 639f5d006e36bb303f525d9479448c412b720c39

Linux

Linux

affected
5.14
unaffected
0 - < 5.14
unaffected
5.15.80 - <= 5.15.*
unaffected
6.0.10 - <= 6.0.*
unaffected
6.1 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now