CVE-2022-49359
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Feb 26, 2025
Updated: Feb 27, 2025
CWE ID 416
Summary
CVE-2022-49359 is a vulnerability affecting the Linux kernel. This issue stems from the drm/panfrost driver, where a job's structure continues to reference panfrost_priv even after it has been freed. This results in a use-after-free scenario, which can be exploited to cause a splat. To mitigate this vulnerability, the direct reference to panfrost_priv in the job structure has been removed, and a reference to the MMU structure, which is the actual requirement, has been added instead.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Linux Kernel
Affected Vendors
- LINUX