CVE-2022-48665

MEDIUM

Linux Kernel 5.19-5.19.11 - Integer Underflow in exFAT Large Capacity Partition Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: exfat: fix overflow for large capacity partition Using int type for sector index, there will be overflow in a large capacity partition. For example, if storage with sector size of 512 bytes and partition capacity is larger than 2TB, there will be overflow.

Scores

CVSS v3 5.5
EPSS 0.0019
EPSS Percentile 9.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-191
Status published
Products (9)
linux/Kernel 5.19.0 - 5.19.12linux
Linux/Linux < 5.19
Linux/Linux 1b6138385499507147e8f654840f4c39afe6adbf - 17244f71765dfec39e84493993993e896c376d09
Linux/Linux 1b6138385499507147e8f654840f4c39afe6adbf - 2e9ceb6728f1dc2fa4b5d08f37d88cbc49a20a62
Linux/Linux 5.19
Linux/Linux 5.19.12 - 5.19.*
Linux/Linux 6.0
linux/linux_kernel 6.0 rc1 (6 CPE variants)
linux/linux_kernel 5.19 - 5.19.12
Published Apr 28, 2024
Tracked Since Feb 18, 2026