PT-2025-8252 · Linux+1 · Linux Kernel+1

Published

2022-05-06

·

Updated

2025-03-02

·

CVE-2022-49318

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, specifically in the f2fs component. The issue was triggered by Syzbot, causing two WARNs in f2fs is valid blkaddr and is bitmap valid. This occurred when the type was DATA GENERIC ENHANCE or DATA GENERIC ENHANCE READ, and the blkaddr was not within the correct range. The call trace for this issue includes functions such as f2fs get node info, read node page, and f2fs iget. The fix involved replacing WARN ON with dump stack to address these warnings.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02602
CVE-2022-49318

Affected Products

Astra Linux
Linux Kernel