PT-2025-26143 · Linux+1 · Linux Kernel+1

Published

2025-06-18

·

Updated

2025-06-18

·

CVE-2022-50217

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A race condition between the write(2) and close(2) system calls in the Linux kernel's FUSE (Filesystem in Userspace) implementation allows pages to be dirtied after the fuse flush function has been called. This can lead to a situation where there might not be a writable open file later if the dirty pages are not flushed from fuse release(). To prevent this, any remaining dirty pages must be written back before the file is released.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2022-50217

Affected Products

Astra Linux
Linux Kernel