CVE-2022-49564
crypto: qat - add param check for DH
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In the Linux kernel, the following vulnerability has been resolved: crypto: qat - add param check for DH Reject requests with a source buffer that is bigger than the size of the
key. This is to prevent a possible integer underflow that might happen
when copying the source scatterlist into a linear buffer.
In the Linux kernel, the following vulnerability has been resolved: crypto: qat - add param check for DH Reject requests with a source buffer that is bigger than the size of the key. This is to prevent a possible integer underflow that might happen when copying the source scatterlist into a linear buffer.
This update for the Linux Kernel 5.3.18-150300_59_164 fixes several issues. The following security issues were fixed. Net: tun: Fix use-after-free in tun_detach. Crypto: qat - add param check for RSA. Crypto: qat - add param check for DH. Tap: add missing verification for short frame. Net: inet6: do not leave a dangling sk pointer in inet6_create.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2025-02-26 CVE Reserved
- 2025-02-26 CVE Published
- 2025-10-01 CVE Updated
- 2025-10-01 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-191: Integer Underflow (Wrap or Wraparound)
CAPEC
References (3)
| URL | Tag | Source | 
|---|
| URL | Date | SRC | 
|---|
| URL | Date | SRC | 
|---|
Affected Vendors, Products, and Versions
| Vendor | Product | Version | Other | Status | ||||||
|---|---|---|---|---|---|---|---|---|---|---|
| Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status | 
| Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product  "Linux Kernel" | < 5.15.58 Search vendor "Linux" for product "Linux Kernel" and version " < 5.15.58" | en | 
	        
	            
	        
	        Affected
	     | ||||||
| Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product  "Linux Kernel" | < 5.18.15 Search vendor "Linux" for product "Linux Kernel" and version " < 5.18.15" | en | 
	        
	            
	        
	        Affected
	     | ||||||
| Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product  "Linux Kernel" | < 5.19 Search vendor "Linux" for product "Linux Kernel" and version " < 5.19" | en | 
	        
	            
	        
	        Affected
	     | ||||||
