Executive Summary

Informations
Name CVE-2022-49368 First vendor Publication 2025-02-26
Vendor Cve Last vendor Modification 2025-04-14

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Overall CVSS Score 7.1
Base Score 7.1 Environmental Score 7.1
impact SubScore 5.2 Temporal Score 7.1
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact High
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry()

The "fsp->location" variable comes from user via ethtool_get_rxnfc(). Check that it is valid to prevent an out of bounds read.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-49368

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-125 Out-of-bounds Read

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3539

Sources (Detail)

https://git.kernel.org/stable/c/0b238f75b65ed4462ef4cdfa718cac0ac7fce3b8
https://git.kernel.org/stable/c/2bd1faedb74dc2a2be3972abcd4239b75a3e7b00
https://git.kernel.org/stable/c/4cde554c70d7397cfa2e4116bacb4accdfb6fd48
https://git.kernel.org/stable/c/5ba81f82607ead85fe36f50869fc4f5661359ab8
https://git.kernel.org/stable/c/657e7174603f0aab2cdedc64ac81edffd2a87afe
https://git.kernel.org/stable/c/71ae30662ec610b92644d13f79c78f76f17873b3
https://git.kernel.org/stable/c/b24ca1cf846273361d5bd73a35de95a486a54b6d
https://git.kernel.org/stable/c/b4f0e57ea0d867aacffad7999527e48bd4ea9293
https://git.kernel.org/stable/c/e7e7104e2d5ddf3806a28695670f21bef471f1e1
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
Date Informations
2025-06-26 02:09:36
  • Multiple Updates
2025-06-25 12:22:27
  • Multiple Updates
2025-06-24 02:14:12
  • Multiple Updates
2025-05-27 02:10:27
  • Multiple Updates
2025-02-26 17:20:32
  • First insertion