CVE-2022-50826 describes a NULL pointer dereference vulnerability in the Linux kernel's ipu3-imgu driver, specifically within the imgu_subdev_set_selection() function. This flaw occurs when v4l2_subdev_get_try_crop() and v4l2_subdev_get_try_compose() are called with a NULL subdev state. While a CVSS score is not provided, the FAUCET Risk Score is 7/100, indicating a low severity. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 5.14CNA affecteddefault affected | |
| Linux | Linux | >= 0d346d2a6f54f06f36b224fd27cd6eafe8c83be9, < 5038ee677606106c91564f9c4557d808d14bad70, >= 0d346d2a6f54f06f36b224fd27cd6eafe8c83be9, < 611d617bdb6c5d636a9861ec1c98e813fc8a5556, >= 0d346d2a6f54f06f36b224fd27cd6eafe8c83be9, < dc608edf7d45ba0c2ad14c06eccd66474fec7847, >= 0d346d2a6f54f06f36b224fd27cd6eafe8c83be9, < fa6bbb4894b9b947063c6ff90018a954c5f9f4b3CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.