cbcvebase.
CVE-2022-50333
published 2025-09-15

CVE-2022-50333: In the Linux kernel, the following vulnerability has been resolved: fs: jfs: fix shift-out-of-bounds in dbDiscardAG This should be applied to most URSAN bugs…

PriorityP427high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.15%
4.9th percentile
In the Linux kernel, the following vulnerability has been resolved: fs: jfs: fix shift-out-of-bounds in dbDiscardAG This should be applied to most URSAN bugs found recently by syzbot, by guarding the dbMount. As syzbot feeding rubbish into the bmap descriptor.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.4-1 (bookworm)linux 6.1.4-1 (bookworm)
linuxlinux
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < f8d4d0bac603616e2fa4a3907e81ed13f8f3c380f8d4d0bac603616e2fa4a3907e81ed13f8f3c380
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 0183c8f46ab5bcd0740f41c87f5141c6ca2bf1bb0183c8f46ab5bcd0740f41c87f5141c6ca2bf1bb
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 624843f1bac448150f6859999c72c4841c14a2e3624843f1bac448150f6859999c72c4841c14a2e3
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 50163a115831ef4e6402db5a7ef487d1989d724950163a115831ef4e6402db5a7ef487d1989d7249
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 911999b193735cd378517b6cd5fe585ee345d49c911999b193735cd378517b6cd5fe585ee345d49c
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 10b87da8fae79c7daf5eda6a9e4f1d31b85b4d9210b87da8fae79c7daf5eda6a9e4f1d31b85b4d92
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < ab5cd3d62c2493eca3337e7d0178cc7bd819ca64ab5cd3d62c2493eca3337e7d0178cc7bd819ca64
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 3d340b684dcec5e34efc470227cd1c7d2df121ad3d340b684dcec5e34efc470227cd1c7d2df121ad
linuxlinux>= b40c2e665cd552eae5fbdbb878bc29a34357668e < 25e70c6162f207828dd405b432d8f2a98dbf708225e70c6162f207828dd405b432d8f2a98dbf7082
linuxlinux_kernel< 4.9.3374.9.337
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 0 < 6.1.4-16.1.4-1
linuxlinux_kernel>= 4.10 < 4.14.3034.14.303
linuxlinux_kernel>= 4.15 < 4.19.2704.19.270
linuxlinux_kernel>= 4.20 < 5.4.2295.4.229
linuxlinux_kernel>= 5.11 < 5.15.865.15.86
linuxlinux_kernel>= 5.16 < 6.0.166.0.16
linuxlinux_kernel>= 5.5 < 5.10.1635.10.163
linuxlinux_kernel>= 6.1 < 6.1.26.1.2

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.