UBUNTU-CVE-2022-50582
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-50582
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: regulator: core: Prevent integer underflow By using a ratio of delay to poll_enabled_time that is not integer time_remaining underflows and does not exit the loop as expected. As delay could be derived from DT and poll_enabled_time is defined in the driver this can easily happen. Use a signed iterator to make sure that the loop exits once the remaining time is negative.
References: https://ubuntu.com/security/CVE-2022-50582, https://www.cve.org/CVERecord?id=CVE-2022-50582, https://git.kernel.org/linus/8d8e16592022c9650df8aedfe6552ed478d7135b, https://git.kernel.org/stable/c/8d8e16592022c9650df8aedfe6552ed478d7135b, https://git.kernel.org/stable/c/9f2395316e4845466cb9b5b9b15a171a2c91913c, https://git.kernel.org/stable/c/b051d9bf98bd9cea312b228e264eb6542a9beb67, https://git.kernel.org/stable/c/bfe602d9a349360e60e9051c9cafb9fef204524d, https://git.kernel.org/stable/c/e33da263e9658bfe870ea7836fbbd72f246d7dbd
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
