{"schema_version":"1.9.0","id":"CVE-2022-3077","published":"2022-09-09T14:39:54Z","modified":"2026-08-12T03:51:45.650522905Z","related":["ALSA-2023:0300","ALSA-2023:0334"],"details":"A buffer overflow vulnerability was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way it handled the I2C_SMBUS_BLOCK_PROC_CALL case (via the ioctl I2C_SMBUS) with malicious input data. This flaw could allow a local user to crash the system.","affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/torvalds/linux","events":[{"introduced":"3d7cb6b04c3f3115719235cc6866b10326de34cd"},{"last_affected":"3d7cb6b04c3f3115719235cc6866b10326de34cd"}],"database_specific":{"extracted_events":[{"introduced":"fixed in kernel 5.19"},{"last_affected":"fixed in kernel 5.19"}],"source":"AFFECTED_FIELD"}}],"versions":["fixed in kernel 5.19","v5.19"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-3077.json"}}],"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/3xxx/CVE-2022-3077.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-3077"},{"type":"FIX","url":"https://github.com/torvalds/linux/commit/690b2549b19563ec5ad53e5c82f6a944d910086e"}],"database_specific":{"cna_assigner":"redhat","cwe_ids":["CWE-120"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/3xxx/CVE-2022-3077.json"}}