PT-2025-40120 · Ext4+3 · Ext4+3
Published
2022-09-29
·
Updated
2025-11-14
·
CVE-2022-50435
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 5.19.0-rc8-00001-g31ba1e3b8305
Description
The Linux kernel contained a flaw within the ext4 filesystem implementation. Specifically, a crash could occur when attempting to create inline data following a direct I/O (DIO) write operation. This happens because the EXT4 STATE MAY INLINE DATA flag was not being cleared after a DIO write, leading to confusion when the inode was truncated and a normal write was attempted. This confusion manifested as a kernel bug during writepage operations.
Recommendations
Update to Linux kernel version 5.19.0-rc8-00001-g31ba1e3b8305 or a later version that includes the fix.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse
Ext4