CVE-2022-50815
published 2025-12-30CVE-2022-50815: In the Linux kernel, the following vulnerability has been resolved: ext2: Add sanity checks for group and filesystem size Add sanity check that filesystem size…
PriorityP422low5.5
EPSS
0.21%
10.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that filesystem size does not exceed the underlying
device size and that group size is big enough so that metadata can fit
into it. This avoid trying to mount some crafted filesystems with
extremely large group counts.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.3-1 (bookworm) | linux 6.0.3-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 40ff52527daec00cf1530c17a95636916ddd3b38 | 40ff52527daec00cf1530c17a95636916ddd3b38 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 321440079763998076b75e0c802524e2218a7d97 | 321440079763998076b75e0c802524e2218a7d97 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d766f2d1e3e3bd44024a7f971ffcf8b8fbb7c5d2 | d766f2d1e3e3bd44024a7f971ffcf8b8fbb7c5d2 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 0 < 6.0.3-1 | 6.0.3-1 |
| linux | linux_kernel | >= 2.6.12 < 5.19.17 | 5.19.17 |
| linux | linux_kernel | >= 5.20.0 < 6.0.3 | 6.0.3 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: ext2: Add sanity checks for group and filesystem size
vendor_redhat·2025-12-30·CVSS 5.5
CVE-2022-50815 [LOW] CWE-1284 kernel: ext2: Add sanity checks for group and filesystem size
kernel: ext2: Add sanity checks for group and filesystem size
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that filesystem size does not exceed the underlying
device size and that group size is big enough so that metadata can fit
into it. This avoid trying to mount some crafted filesystems with
extremely large group counts.
A flaw was found in the Linux kernel's ext2 filesystem implementation. The filesystem mount code lacks proper validation of filesystem size against the underlying device size and group size against metadata requirements. This allows specially crafted ext2 filesystem images with extremely large group counts to be mounted, potentially causing resource exhaustion or kernel crash
Debian
CVE-2022-50815: linux - In the Linux kernel, the following vulnerability has been resolved: ext2: Add s...
vendor_debian·2022
CVE-2022-50815 CVE-2022-50815: linux - In the Linux kernel, the following vulnerability has been resolved: ext2: Add s...
In the Linux kernel, the following vulnerability has been resolved: ext2: Add sanity checks for group and filesystem size Add sanity check that filesystem size does not exceed the underlying device size and that group size is big enough so that metadata can fit into it. This avoid trying to mount some crafted filesystems with extremely large group counts.
Scope: local
bookworm: resolved (fixed in 6.0.3-1)
bullseye: open
forky: resolved (fixed in 6.0.3-1)
sid: resolved (fixed in 6.0.3-1)
trixie: resolved (fixed in 6.0.3-1)
OSV
ext2: Add sanity checks for group and filesystem size
osv·2025-12-30
CVE-2022-50815 ext2: Add sanity checks for group and filesystem size
ext2: Add sanity checks for group and filesystem size
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that filesystem size does not exceed the underlying
device size and that group size is big enough so that metadata can fit
into it. This avoid trying to mount some crafted filesystems with
extremely large group counts.
GHSA
GHSA-8xqr-g5fm-p394: In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that file
ghsa_unreviewed·2025-12-30
CVE-2022-50815 GHSA-8xqr-g5fm-p394: In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that file
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that filesystem size does not exceed the underlying
device size and that group size is big enough so that metadata can fit
into it. This avoid trying to mount some crafted filesystems with
extremely large group counts.
OSV
CVE-2022-50815: In the Linux kernel, the following vulnerability has been resolved: ext2: Add sanity checks for group and filesystem size Add sanity check that filesy
osv·2025-12-30
CVE-2022-50815 CVE-2022-50815: In the Linux kernel, the following vulnerability has been resolved: ext2: Add sanity checks for group and filesystem size Add sanity check that filesy
In the Linux kernel, the following vulnerability has been resolved: ext2: Add sanity checks for group and filesystem size Add sanity check that filesystem size does not exceed the underlying device size and that group size is big enough so that metadata can fit into it. This avoid trying to mount some crafted filesystems with extremely large group counts.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2022-50815 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz
CVE-2022-50815 CVE-2022-50815 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2022-50815 :
Linux Kernel vulnerability analysis and mitigation
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that filesystem size does not exceed the underlying
device size and that group size is big enough so that metadata can fit
into it. This avoid trying to mount some crafted filesystems with
extremely large group counts.
Source : NVD
Published December 30, 2025
CNA Score N/A
Affected Technologies
Linux Kernel
Linux Debian
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 6.8
Exploitation Probability (EPSS) N/A
Affected packages and libraries
linux-azure-5.4
linux-ibm-5.4
Sources
Bugzilla
CVE-2022-50815 kernel: ext2: Add sanity checks for group and filesystem size
bugzilla·2025-12-30
CVE-2022-50815 [LOW] CVE-2022-50815 kernel: ext2: Add sanity checks for group and filesystem size
CVE-2022-50815 kernel: ext2: Add sanity checks for group and filesystem size
In the Linux kernel, the following vulnerability has been resolved:
ext2: Add sanity checks for group and filesystem size
Add sanity check that filesystem size does not exceed the underlying
device size and that group size is big enough so that metadata can fit
into it. This avoid trying to mount some crafted filesystems with
extremely large group counts.
Discussion:
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2025123014-CVE-2022-50815-6923@gregkh/T
2025-12-30
Published