PT-2025-40113 · Ext4+3 · Ext4+3

Published

2025-10-01

·

Updated

2026-03-14

·

CVE-2022-50428

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains an issue related to off-by-one errors in fast-commit block filling within the ext4 filesystem. These errors stem from constraints on how fast-commit blocks are filled with TLV (Type-Length-Value) entries. Specifically, TLVs must start at least 10 bytes before the end of the block and end at least 1 byte before the end of the block. Old kernels will be unable to replay fast-commit journals created by kernels with the fix.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

BDU:2026-05857
CVE-2022-50428
SUSE-SU-2025:03615-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:3761-1

Affected Products

Debian
Linux Kernel
Suse
Ext4