CVE-2022-50205
published 2025-06-18CVE-2022-50205: In the Linux kernel, the following vulnerability has been resolved: ext2: Add more validity checks for inode counts Add checks verifying number of inodes…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add more validity checks for inode counts
Add checks verifying number of inodes stored in the superblock matches
the number computed from number of inodes per group. Also verify we have
at least one block worth of inodes per group. This prevents crashes on
corrupted filesystems.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.2-1 (bookworm) | linux 6.0.2-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 0bcdc31094a12b4baf59e241feabc9787cf635fa | 0bcdc31094a12b4baf59e241feabc9787cf635fa |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 07303a9abe3a997d9864fb4315e34b5acfe8fc25 | 07303a9abe3a997d9864fb4315e34b5acfe8fc25 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < b3f423683818cfe15de14d5d9dff44148ff16bbf | b3f423683818cfe15de14d5d9dff44148ff16bbf |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d08bb199a406424a8ed0009efdf41710e6d849ee | d08bb199a406424a8ed0009efdf41710e6d849ee |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 96b18d3a1be0354ccce43f0ef61b5a3d7e432552 | 96b18d3a1be0354ccce43f0ef61b5a3d7e432552 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7a48fdc88a3c35e046a6a0a38eba00f21c65b16e | 7a48fdc88a3c35e046a6a0a38eba00f21c65b16e |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5e63c5fe9123fa76ffaeff26c211308736ec3a07 | 5e63c5fe9123fa76ffaeff26c211308736ec3a07 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < fa78f336937240d1bc598db817d638086060e7e9 | fa78f336937240d1bc598db817d638086060e7e9 |
| linux | linux_kernel | < 4.14.291 | 4.14.291 |
| linux | linux_kernel | >= 0 < 5.10.140-1 | 5.10.140-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 0 < 6.0.2-1 | 6.0.2-1 |
| linux | linux_kernel | >= 4.15 < 4.19.256 | 4.19.256 |
| linux | linux_kernel | >= 4.20 < 5.4.211 | 5.4.211 |
| linux | linux_kernel | >= 5.11 < 5.15.61 | 5.15.61 |
| linux | linux_kernel | >= 5.16 < 5.18.18 | 5.18.18 |
| linux | linux_kernel | >= 5.19 < 5.19.2 | 5.19.2 |
| linux | linux_kernel | >= 5.5 < 5.10.137 | 5.10.137 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mrm7-wfp3-2v32: In the Linux kernel, the following vulnerability has been resolved:
ext2: Add more validity checks for inode counts
Add checks verifying number of i
ghsa_unreviewed·2025-06-18
CVE-2022-50205 [MEDIUM] GHSA-mrm7-wfp3-2v32: In the Linux kernel, the following vulnerability has been resolved:
ext2: Add more validity checks for inode counts
Add checks verifying number of i
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add more validity checks for inode counts
Add checks verifying number of inodes stored in the superblock matches
the number computed from number of inodes per group. Also verify we have
at least one block worth of inodes per group. This prevents crashes on
corrupted filesystems.
OSV
CVE-2022-50205: In the Linux kernel, the following vulnerability has been resolved: ext2: Add more validity checks for inode counts Add checks verifying number of ino
osv·2025-06-18·CVSS 5.5
CVE-2022-50205 [MEDIUM] CVE-2022-50205: In the Linux kernel, the following vulnerability has been resolved: ext2: Add more validity checks for inode counts Add checks verifying number of ino
In the Linux kernel, the following vulnerability has been resolved: ext2: Add more validity checks for inode counts Add checks verifying number of inodes stored in the superblock matches the number computed from number of inodes per group. Also verify we have at least one block worth of inodes per group. This prevents crashes on corrupted filesystems.
Red Hat
kernel: Linux kernel: Denial of Service in ext2 filesystem via corrupted inode counts
vendor_redhat·2025-06-18·CVSS 5.5
CVE-2022-50205 [MEDIUM] CWE-1284 kernel: Linux kernel: Denial of Service in ext2 filesystem via corrupted inode counts
kernel: Linux kernel: Denial of Service in ext2 filesystem via corrupted inode counts
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add more validity checks for inode counts
Add checks verifying number of inodes stored in the superblock matches
the number computed from number of inodes per group. Also verify we have
at least one block worth of inodes per group. This prevents crashes on
corrupted filesystems.
A flaw was found in the Linux kernel's ext2 filesystem. A local attacker could exploit this vulnerability by providing a specially crafted or corrupted filesystem with invalid inode counts. This could lead to system crashes, resulting in a Denial of Service (DoS) for the affected system.
Mitigation: Mitigation for this issue is either not available or the
Debian
CVE-2022-50205: linux - In the Linux kernel, the following vulnerability has been resolved: ext2: Add m...
vendor_debian·2022·CVSS 5.5
CVE-2022-50205 [MEDIUM] CVE-2022-50205: linux - In the Linux kernel, the following vulnerability has been resolved: ext2: Add m...
In the Linux kernel, the following vulnerability has been resolved: ext2: Add more validity checks for inode counts Add checks verifying number of inodes stored in the superblock matches the number computed from number of inodes per group. Also verify we have at least one block worth of inodes per group. This prevents crashes on corrupted filesystems.
Scope: local
bookworm: resolved (fixed in 6.0.2-1)
bullseye: resolved (fixed in 5.10.140-1)
forky: resolved (fixed in 6.0.2-1)
sid: resolved (fixed in 6.0.2-1)
trixie: resolved (fixed in 6.0.2-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/07303a9abe3a997d9864fb4315e34b5acfe8fc25https://git.kernel.org/stable/c/0bcdc31094a12b4baf59e241feabc9787cf635fahttps://git.kernel.org/stable/c/5e63c5fe9123fa76ffaeff26c211308736ec3a07https://git.kernel.org/stable/c/7a48fdc88a3c35e046a6a0a38eba00f21c65b16ehttps://git.kernel.org/stable/c/96b18d3a1be0354ccce43f0ef61b5a3d7e432552https://git.kernel.org/stable/c/b3f423683818cfe15de14d5d9dff44148ff16bbfhttps://git.kernel.org/stable/c/d08bb199a406424a8ed0009efdf41710e6d849eehttps://git.kernel.org/stable/c/fa78f336937240d1bc598db817d638086060e7e9
2025-06-18
Published