CVE-2022-48667

LOW

Linux Kernel 5.13-5.19.12 - Temporary Data Corruption in SMB3 Insert Range

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: smb3: fix temporary data corruption in insert range insert range doesn't discard the affected cached region so can risk temporarily corrupting file data. Also includes some minor cleanup (avoiding rereading inode size repeatedly unnecessarily) to make it clearer.

Scores

CVSS v3 3.3
EPSS 0.0019
EPSS Percentile 9.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (9)
linux/Kernel 5.13.0 - 5.19.12linux
Linux/Linux < 5.13
Linux/Linux 5.13
Linux/Linux 5.19.12 - 5.19.*
Linux/Linux 6.0
Linux/Linux 7fe6fe95b936084dce6eedcc2cccadf96eafae73 - 0cdde8460c304283d4ebe3f767a70215d1ab9d4e
Linux/Linux 7fe6fe95b936084dce6eedcc2cccadf96eafae73 - 9c8b7a293f50253e694f19161c045817a938e551
linux/linux_kernel 6.0 rc1 (3 CPE variants)
linux/linux_kernel 5.13 - 5.19.12
Published Apr 28, 2024
Tracked Since Feb 18, 2026