In the Linux kernel before 6.1.2, kernel/module/decompress.c misinterprets the module_get_next_page return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
References
Configurations
Information
Published : 2023-02-28 13:15
Updated : 2023-03-06 08:27
NVD link : CVE-2023-22997
Mitre link : CVE-2023-22997
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
linux
- linux_kernel