THREATOPS
THREAT OPSThreat News › [NVD] CVE-2022-49518 (HIGH 7.1) — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-topology: Correct get_control_data for non bytes payload It is possible to craft a topology where sof_get_control_data() would do out of bounds access because it expects that it is only called w

[NVD] CVE-2022-49518 (HIGH 7.1) — In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: ipc3-topology: Correct get_control_data for non bytes payload It is possible to craft a topology where sof_get_control_data() would do out of bounds access because it expects that it is only called w

lownvdPublished 2025-02-26

CVE-2022-49518 CVSS: 7.1 HIGH Published: 2025-02-26T07:01:27.837

In the Linux kernel, the following vulnerability has been resolved:

ASoC: SOF: ipc3-topology: Correct get_control_data for non bytes payload

It is possible to craft a topology where sof_get_control_data() would do out of bounds access because it expects that it is only called when the payload is bytes type. Confusingly it also han

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2022-49518