CVE-2022-49948
In the Linux kernel, the following vulnerability has been resolved: vt: Clear selection before changing the font When changing the console font with ioctl(KDFONTOP) the new font size can be bigger than the previous font.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.25%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In the Linux kernel, the following vulnerability has been resolved: vt: Clear selection before changing the font When changing the console font with ioctl(KDFONTOP) the new font size can be bigger than the previous font. A previous selection may thus now be outside of the new screen size and thus trigger out-of-bounds accesses to graphics memory if the selection is removed in vc_do_resize(). Prevent such out-of-memory accesses by dropping the selection before the various con_font_set() console handlers are called.
- CVSS 3.1
- 7.1 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
- EPSS
- 0.25% probability · 16th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-125
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/1cf1930369c9dc428d827b60260c53271bff3285Patch
- https://git.kernel.org/stable/c/2535431ae967ad17585513649625fea7db28d4dbPatch
- https://git.kernel.org/stable/c/566f9c9f89337792070b5a6062dff448b3e7977fPatch
- https://git.kernel.org/stable/c/989201bb8c00b222235aff04e6200230d29dc7bbPatch
- https://git.kernel.org/stable/c/c555cf04684fde39b5b0dd9fd80730030ee10c4aPatch
- https://git.kernel.org/stable/c/c904fe03c4bd1f356a58797d39e2a5d0ca15cefcPatch
- https://git.kernel.org/stable/c/e9ba4611ddf676194385506222cce7b0844e708ePatch
- https://git.kernel.org/stable/c/f74b4a41c5d7c9522469917e3072e55d435efd9ePatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.