VYPR
Medium severity5.5NVD Advisory· Published Mar 27, 2025· Updated Jun 17, 2026

CVE-2022-49756

CVE-2022-49756

Description

In the Linux kernel, the following vulnerability has been resolved:

phy: usb: sunplus: Fix potential null-ptr-deref in sp_usb_phy_probe()

sp_usb_phy_probe() will call platform_get_resource_byname() that may fail and return NULL. devm_ioremap() will use usbphy->moon4_res_mem->start as input, which may causes null-ptr-deref. Check the ret value of platform_get_resource_byname() to avoid the null-ptr-deref.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • Linux/Kernel7 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=6.1,<6.1.9
    • cpe:2.3:o:linux:linux_kernel:6.2:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.2:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.2:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.2:rc4:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 6.1
  • osv-coords
    Range: >= 6.1.0, < 6.1.9

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.