CVE-2022-50746 — Linux vulnerability
7 documents6 sources
Severity
5.5MEDIUM
No vectorEPSS
0.0%
top 93.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 24
Description
In the Linux kernel, the following vulnerability has been resolved:
erofs: validate the extent length for uncompressed pclusters
syzkaller reported a KASAN use-after-free:
https://syzkaller.appspot.com/bug?extid=2ae90e873e97f1faf6f2
The referenced fuzzed image actually has two issues:
- m_pa == 0 as a non-inlined pcluster;
- The logical length is longer than its physical length.
The first issue has already been addressed. This patch addresses
the second issue by checking the extent length va…
Affected Packages4 packages
▶CVEListV5linux/linux02827e1796b33f1794966f5c3101f8da2dfa9c1d — dc8b6bd587b13b85aff6e9d36cdfcd3f955cac9e+3
🔴Vulnerability Details
3GHSA▶
GHSA-9rf3-hx86-5f4p: In the Linux kernel, the following vulnerability has been resolved:
erofs: validate the extent length for uncompressed pclusters
syzkaller reported↗2025-12-24
OSV▶
CVE-2022-50746: In the Linux kernel, the following vulnerability has been resolved: erofs: validate the extent length for uncompressed pclusters syzkaller reported a↗2025-12-24