CVE-2022-50841 is a vulnerability in the Linux kernel's NTFS3 filesystem driver. It allows for an out-of-bounds memory read/write due to an integer overflow when parsing MFT attributes with very large sizes. This flaw could lead to a kernel crash or potentially arbitrary code execution. There is no public information indicating active exploitation, and no exploit code or significant community discussion has been observed.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 5.15CNA affecteddefault affected | |
| Linux | Linux | >= 4342306f0f0d5ff4315a204d315c1b51b914fca5, < 0bb9f93ba63acfdb7c363d9f9fc2199fc6fa913d, >= 4342306f0f0d5ff4315a204d315c1b51b914fca5, < a1f0b873cf6ac1f00a749707d866494ed0708978, >= 4342306f0f0d5ff4315a204d315c1b51b914fca5, < d4489ba8fb806e07b43eecca5e9af5865d94cbf6, >= 4342306f0f0d5ff4315a204d315c1b51b914fca5, < e19c6277652efba203af4ecd8eed4bd30a0054c9CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.