cbcvebase.
CVE-2022-48946
published 2024-10-21

CVE-2022-48946: In the Linux kernel, the following vulnerability has been resolved: udf: Fix preallocation discarding at indirect extent boundary When preallocation extent is…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.9th percentile
In the Linux kernel, the following vulnerability has been resolved: udf: Fix preallocation discarding at indirect extent boundary When preallocation extent is the first one in the extent block, the code would corrupt extent tree header instead. Fix the problem and use udf_delete_aext() for deleting extent to avoid some code duplication.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c8b6fa4511a7900db9fb0353b630d4d2ed1ba99cc8b6fa4511a7900db9fb0353b630d4d2ed1ba99c
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7665857f88557c372da35534165721156756f77f7665857f88557c372da35534165721156756f77f
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 72f651c96c8aadf087fd782d551bf7db648a8c2e72f651c96c8aadf087fd782d551bf7db648a8c2e
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 4d835efd561dfb9bf5409f11f4ecd428d5d292264d835efd561dfb9bf5409f11f4ecd428d5d29226
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1a075f4a549481ce6e8518d8379f193ccec6b7461a075f4a549481ce6e8518d8379f193ccec6b746
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 63dbbd8f1499b0a161e701a04aa50148d60bd1f763dbbd8f1499b0a161e701a04aa50148d60bd1f7
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < ae56d9a017724f130cf1a263dd82a78d2a6e3852ae56d9a017724f130cf1a263dd82a78d2a6e3852
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 12a88f572d6d94b5c0b72e2d1782cc2e96ac06cf12a88f572d6d94b5c0b72e2d1782cc2e96ac06cf
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < cfe4c1b25dd6d2f056afc00b7c98bcb3dd0b1fc3cfe4c1b25dd6d2f056afc00b7c98bcb3dd0b1fc3
linuxlinux_kernel< 4.9.3374.9.337
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.162-15.10.162-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 4.10 < 4.14.3034.14.303
linuxlinux_kernel>= 4.15 < 4.19.2704.19.270
linuxlinux_kernel>= 4.20 < 5.4.2295.4.229
linuxlinux_kernel>= 5.11 < 5.15.855.15.85
linuxlinux_kernel>= 5.16 < 6.0.156.0.15
linuxlinux_kernel>= 5.5 < 5.10.1615.10.161

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.