CVE-2022-50864 is a vulnerability in the Linux kernel's nilfs2 filesystem module. It arises from insufficient validation of the s_log_block_size field in superblock data, which, if corrupted and excessively large, can lead to a shift-out-of-bounds error and a kernel panic. The vulnerability is addressed by implementing a new helper function for block size retrieval that includes sanity checks. While no CVSS score is provided, its FAUCET Risk Score is 7/100, and its EPSS score is very low, indicating a minimal likelihood of exploitation. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 2.6.30CNA affecteddefault affected | |
| Linux | Linux | >= 8a9d2191e9f43bbcd256a9a6871bd73434c83f2f, < 8b6ef451b5701b37d9a5905534595776a662edfc, >= 8a9d2191e9f43bbcd256a9a6871bd73434c83f2f, < a16731fa1b96226c75bbf18e73513b14fc318360, >= 8a9d2191e9f43bbcd256a9a6871bd73434c83f2f, < ddb6615a168f97b91175e00eda4c644741cf531c, >= 8a9d2191e9f43bbcd256a9a6871bd73434c83f2f, < ebeccaaef67a4895d2496ab8d9c2fb8d89201211, >= 8a9d2191e9f43bbcd256a9a6871bd73434c83f2f, < ec93b5430ec0f60877a5388bb023d60624f9ab9fCNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.