cbcvebase.
CVE-2022-49007
published 2024-10-21

CVE-2022-49007: In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry() Syzbot reported a…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.2th percentile
In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry() Syzbot reported a null-ptr-deref bug: NILFS (loop0): segctord starting. Construction interval = 5 seconds, CP frequency 3c 02 00 0f 85 26 05 00 00 49 8b 46 10 be a6 00 00 00 48 c7 c7 RSP: 0018:ffffc90003dff830 EFLAGS: 00010212 RAX: dffffc0000000000 RBX: ffff88802594e218 RCX: 000000000000000d RDX: 0000000000000002 RSI: 0000000000002000 RDI: 0000000000000010 RBP: ffff888071880222 R08: 0000000000000005 R09: 000000000000003f R10: 000000000000000d R11: 0000000000000000 R12: ffff888071880158 R13: ffff88802594e220 R14: 0000000000000000 R15: 0000000000000004 FS: 0000000000000000(0000) GS:ffff8880b9b00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00007fb1c08316a8 CR3: 0000000018560000 CR4: 0000000000350ee0 Call Trace: nilfs_dat_commit_free fs/nilfs2/dat.c:114 [inline] nilfs_dat_commit_end+0x464/0x5f0 fs/nilfs2/dat.c:193 nilfs_dat_commit_update+0x26/0x40 fs/nilfs2/dat.c:236 nilfs_btree_commit_update_v+0x87/0x4a0 fs/nilfs2/btree.c:1940 nilfs_btree_commit_propagate_v fs/nilfs2/btree.c:2016 [inline] nilfs_btree_propagate_v fs/nilfs2/btree.c:2046 [inline] nilfs_btree_propagate+0xa00/0xd60 fs/nilfs2/btree.c:2088 nilfs_bmap_propagate+0x73/0x170 fs/nilfs2/bmap.c:337 nilfs_collect_file_data+0x45/0xd0 fs/nilfs2/segment.c:568 nilfs_segctor_apply_buffers+0x14a/0x470 fs/nilfs2/segment.c:1018 nilfs_segctor_scan_file+0x3f4/0x6f0 fs/nilfs2/segment.c:1067 nilfs_segctor_collect_blocks fs/nilfs2/segment.c:1197 [inline] nilfs_segctor_collect fs/nilfs2/segment.c:1503 [inline] nilfs_segctor_do_construct+0x12fc/0x6af0 fs/nilfs2/segment.c:2045 nilfs_segctor_construct+0x8e3/0xb30 fs/nilfs2/segment.c:2379 nilfs_segctor_thread_construct fs/nilfs2/segment.c:2487 [inline] nilfs_segctor_thread+0x3c3/0xf30 fs/nilfs2/segment.c:2570 kthread+0x2e4/0x3a0 kernel/kthread.c:376 ret_from_fork+0x1f/0x30 arch/x86/entry/entry_64.S:30

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.0.12-1 (bookworm)linux 6.0.12-1 (bookworm)
linuxlinux
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < 2f2c59506ae39496588ceb8b88bdbdbaed895d632f2c59506ae39496588ceb8b88bdbdbaed895d63
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < 165c7a3b27a3857ebf57f626b9f38b48b6792e68165c7a3b27a3857ebf57f626b9f38b48b6792e68
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < bc3fd3293887b4cf84a9109700faeb82de533c89bc3fd3293887b4cf84a9109700faeb82de533c89
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < 9a130b72e6bd1fb07fc3cde839dc6fb53da76f079a130b72e6bd1fb07fc3cde839dc6fb53da76f07
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < e858917ab785afe83c14f5ac141301216ccda847e858917ab785afe83c14f5ac141301216ccda847
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < 33021419fd81efd3d729a7f19341ba4b98fe66ce33021419fd81efd3d729a7f19341ba4b98fe66ce
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < 381b84f60e549ea98cec4666c6c728b1b3318756381b84f60e549ea98cec4666c6c728b1b3318756
linuxlinux>= a17564f58b11476c011d623fa1f268602a81c27c < f0a0ccda18d6fd826d7c7e7ad48a6ed61c20f8b4f0a0ccda18d6fd826d7c7e7ad48a6ed61c20f8b4
linuxlinux_kernel< 4.9.3354.9.335
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.158-15.10.158-1
linuxlinux_kernel>= 0 < 6.0.12-16.0.12-1
linuxlinux_kernel>= 0 < 6.0.12-16.0.12-1
linuxlinux_kernel>= 0 < 6.0.12-16.0.12-1
linuxlinux_kernel>= 4.10 < 4.14.3014.14.301
linuxlinux_kernel>= 4.15 < 4.19.2684.19.268
linuxlinux_kernel>= 4.20 < 5.4.2265.4.226
linuxlinux_kernel>= 5.11 < 5.15.825.15.82
linuxlinux_kernel>= 5.16 < 6.0.126.0.12
linuxlinux_kernel>= 5.5 < 5.10.1585.10.158
rackrack>= 3.1.0 < 3.1.163.1.16

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
ghsa7.5HIGH
osv5.5MEDIUM
vendor_redhat7.5HIGH
vendor_debian5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.