Lucene search

K
cvelistRedhatCVELIST:CVE-2022-3108
HistoryDec 14, 2022 - 12:00 a.m.

CVE-2022-3108

2022-12-1400:00:00
CWE-252
redhat
www.cve.org
2
linux kernel
version 5.16-rc6
kfd_parse_subtype_iolink
driver
return value check

6.3 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

An issue was discovered in the Linux kernel through 5.16-rc6. kfd_parse_subtype_iolink in drivers/gpu/drm/amd/amdkfd/kfd_crat.c lacks check of the return value of kmemdup().

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Kernel",
    "versions": [
      {
        "version": "Linux 5.17-rc6",
        "status": "affected"
      }
    ]
  }
]

6.3 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%