
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2022-48774 affects the Linux kernel's DMA engine subsystem, specifically in the PTDMA driver. The vulnerability was discovered and disclosed on July 16, 2024, involving an error handling path issue in the ptcoreinit() function. The vulnerability affects the AMD PTDMA driver implementation in the Linux kernel (NVD).
The vulnerability exists in the error handling path of ptcoreinit() function where two goto statements were incorrectly ordered. This caused resource leaks and attempts to release unallocated resources. Additionally, there was a misplaced error message (dev_err()) that needed to be moved to a more appropriate location. The issue was introduced in the initial PTDMA driver implementation (Kernel Commit).
The vulnerability could lead to resource leaks in the system and potential memory corruption due to attempts to free unallocated resources. This affects systems using the AMD PTDMA driver in the Linux kernel (NVD).
The issue has been fixed through a patch that corrects the order of goto statements in the error handling path and relocates the error message to a more appropriate location. The fix has been implemented in the kernel source tree (Kernel Commit).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."