Oval Definition:oval:org.opensuse.security:def:202239842
Revision Date:2023-02-11Version:1
Title:CVE-2022-39842
Description:

** DISPUTED ** An issue was discovered in the Linux kernel before 5.19. In pxa3xx_gcu_write in drivers/video/fbdev/pxa3xx-gcu.c, the count parameter has a type conflict of size_t versus int, causing an integer overflow and bypassing the size check. After that, because it is used as the third argument to copy_from_user(), a heap overflow may occur. NOTE: the original discoverer disputes that the overflow can actually happen.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2022-39842
SUSE CVE-2022-39842
Platform(s):SUSE Linux Enterprise Micro 5.3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Micro 5.3 is installed
  • AND kernel-default is not affected
  • BACK