Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-50428

23
FAUCET Score

CVE-2022-50428 is an off-by-one error vulnerability in the ext4 fast-commit block filling mechanism within the Linux kernel. This flaw could lead to data corruption or denial of service (DoS) due to incorrect handling of tlv entries in fast-commit blocks. Rated Medium (CVSS 5.5), it requires local access and low privileges to exploit, resulting in high availability impact but no confidentiality or integrity impact. There is currently no public exploit code available, and it has not been observed in active exploitation.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.10, < 5.15.87CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.0.18CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.1, < 6.1.4CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.15%
Probability of exploitation in next 30 days
EPSS Percentile
4.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0015 is in the 27th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (2)

redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2022-50428Low

kernel: ext4: fix off-by-one errors in fast-commit block filling

Oct 1, 2025

References

git.kernel.org / stable/c/18f28f13301d1afb8cea9c4ddcecdbff14488ec6
Patch
git.kernel.org / stable/c/48a6a66db82b8043d298a630f22c62d43550cae5
Patch
git.kernel.org / stable/c/5439ad45c0d0c8db41eb6f4dce6f778f15a5ee16
Patch
git.kernel.org / stable/c/5ca65dffdead16572ca046c43fb576b227f7f635
Patch