{"schema_version":"1.9.0","id":"CVE-2022-49260","published":"2025-02-26T01:56:12.548Z","modified":"2026-08-12T03:51:30.889907684Z","related":["SUSE-SU-2025:1027-1","SUSE-SU-2025:1176-1","SUSE-SU-2025:1183-1","SUSE-SU-2025:1241-1"],"summary":"crypto: hisilicon/sec - fix the aead software fallback for engine","details":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: hisilicon/sec - fix the aead software fallback for engine\n\nDue to the subreq pointer misuse the private context memory. The aead\nsoft crypto occasionally casues the OS panic as setting the 64K page.\nHere is fix it.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"6c46a3297beae4ae2d22b26da5e091f058381c7c"},{"fixed":"40dba7c26e897c637e91312b35f664f1d4d0073c"},{"fixed":"ef7b10f3cac7810ddcfd976304fd125aca33d144"},{"fixed":"5c1149e2abe0b7489300736b8277b45b113de67f"},{"fixed":"0a2a464f863187f97e96ebc6384c052cafd4a54c"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49260.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.14.0"},{"fixed":"5.15.33"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"5.16.19"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.17.0"},{"fixed":"5.17.2"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49260.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/0a2a464f863187f97e96ebc6384c052cafd4a54c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/40dba7c26e897c637e91312b35f664f1d4d0073c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/5c1149e2abe0b7489300736b8277b45b113de67f"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ef7b10f3cac7810ddcfd976304fd125aca33d144"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49260.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-49260"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49260.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}