PT-2025-8252 · Linux+1 · Linux Kernel+1
Published
2022-05-06
·
Updated
2025-03-02
·
CVE-2022-49318
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A vulnerability in the Linux kernel has been resolved, specifically in the f2fs component. The issue was triggered by Syzbot, causing two WARNs in
f2fs is valid blkaddr and is bitmap valid. This occurred when the type was DATA GENERIC ENHANCE or DATA GENERIC ENHANCE READ, and the blkaddr was not within the correct range. The call trace for this issue includes functions such as f2fs get node info, read node page, and f2fs iget. The fix involved replacing WARN ON with dump stack to address these warnings.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel