PT-2025-38327 · Btrfs+3 · Btrfs+3

CVE-2022-50379

·

Publicado

2022-09-26

·

Atualizado

2025-10-23

CVSS v2.0

6.0

Média

VetorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A race condition exists within the Btrfs file system related to quota management. Specifically, the issue occurs when enabling quotas, where a transaction commit is followed by setting the quota root and flags. If the qgroup rescan worker initialization fails, the quota root may be freed while fs info->quota root still points to it, potentially leading to a use-after-free condition. The issue arises when an -EINPROGRESS error is encountered during quota enabling, which can occur if the quota rescan ioctl has already been called.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-01283
CVE-2022-50379
SUSE-SU-2025:03615-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:3761-1

Produtos afetados

Astra Linux
Btrfs
Linux Kernel
Suse