CVE-2022-49165: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: media: imx-jpeg: Prevent decoding NV12M jpegs into single-planar buffers If the application queues an NV12M jpeg as output buffer, but then queues a single planar capture buffer, the kernel will crash with "Unable to handle kernel NULL pointer dereference" in mxc_jpeg_addrs, prevent this by finishing the job with error.

Affected products

  • Linux Linux Kernel: from 5.13, before 5.15.33 (fixed in 5.15.33); from 5.16, before 5.16.19 (fixed in 5.16.19); from 5.17, before 5.17.2 (fixed in 5.17.2)

Published 2025-02-26. Last modified 2026-06-17.