CVE-2022-49529

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 26, 2025
Updated: Mar 10, 2025
CWE ID 476

Summary

CVE-2022-49529 is a vulnerability affecting the Linux kernel's amdgpu driver. The issue involves a null pointer dereference that can result in a kernel panic when the software smu is not enabled. This occurs due to a failure to check if the pp_funcs are initialized before releasing the context. The vulnerability was identified during the release of version 5.16.0-custom and can lead to a supervisor read access in kernel mode, causing the system to crash. The affected code segment resides in the amdgpu\_dpm\_force\_performance\_level function.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share