CVE-2022-49563

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 26, 2025
Updated: Mar 10, 2025
CWE ID 191

Summary

CVE-2022-49563 is a vulnerability affecting the Linux kernel's crypto module. Specifically, in the qat subsystem, there was a failure to check the size of a source buffer before copying it into a linear buffer. This issue could potentially result in an integer underflow, which may lead to security vulnerabilities. The vulnerability has been addressed by adding parameter checks for RSA to prevent such requests with oversized source buffers.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share