PT-2025-18615 · Linux+3 · Linux Kernel+3

Published

2025-05-01

·

Updated

2026-03-14

·

CVE-2022-49898

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, specifically in the btrfs file system. The issue is related to the mishandling of the tree mod log for reallocated nodes, which can cause a kernel panic. The problem occurs when the kernel replays operations for a block that should not have been replayed, leading to incorrect handling of the tree mod log. This can result in a BUG ON condition being triggered in the tree mod log rewind function.
The vulnerability is triggered by a specific sequence of events, including the removal of items from a modified root, the promotion of a child node, and the re-allocation of a node to a new root. The tree mod log is not properly updated in this scenario, leading to the bug.
Recommendations To resolve this issue, it is recommended to update the Linux kernel to a version that includes the fix for this vulnerability. As a temporary workaround, consider disabling the tree mod log rewind function until a patch is available. However, this is not a recommended long-term solution, as it may have unintended consequences on the system's stability and performance. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2022-49898
SUSE-SU-2025:01983-1
SUSE-SU-2025_01983-1

Affected Products

Astra Linux
Debian
Linux Kernel
Suse