{"id":"DEBIAN-CVE-2022-48713","details":"In the Linux kernel, the following vulnerability has been resolved:  perf/x86/intel/pt: Fix crash with stop filters in single-range mode  Add a check for !buf-\u003esingle before calling pt_buffer_region_size in a place where a missing check can cause a kernel crash.  Fixes a bug introduced by commit 670638477aed (\"perf/x86/intel/pt: Opportunistically use single range output mode\"), which added a support for PT single-range output mode. Since that commit if a PT stop filter range is hit while tracing, the kernel will crash because of a null pointer dereference in pt_handle_status due to calling pt_buffer_region_size without a ToPA configured.  The commit which introduced single-range mode guarded almost all uses of the ToPA buffer variables with checks of the buf-\u003esingle variable, but missed the case where tracing was stopped by the PT hardware, which happens when execution hits a configured stop filter.  Tested that hitting a stop filter while PT recording successfully records a trace with this patch but crashes without this patch.","modified":"2026-09-01T16:05:28.808076605Z","published":"2024-06-20T11:15:54.960Z","upstream":["CVE-2022-48713"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2022-48713"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.16.10-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-48713.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.16.10-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-48713.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.16.10-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-48713.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}