PT-2025-26143 · Linux+1 · Linux Kernel+1
Published
2025-06-18
·
Updated
2025-06-18
·
CVE-2022-50217
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A race condition between the write(2) and close(2) system calls in the Linux kernel's FUSE (Filesystem in Userspace) implementation allows pages to be dirtied after the fuse flush function has been called. This can lead to a situation where there might not be a writable open file later if the dirty pages are not flushed from fuse release(). To prevent this, any remaining dirty pages must be written back before the file is released.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Linux Kernel