CVE-2022-48668

LOW

Linux Kernel 5.13-5.19.12 - Temporary Data Corruption in SMB3 Collapse Range

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: smb3: fix temporary data corruption in collapse range collapse range doesn't discard the affected cached region so can risk temporarily corrupting the file data. This fixes xfstest generic/031 I also decided to merge a minor cleanup to this into the same patch (avoiding rereading inode size repeatedly unnecessarily) to make it clearer.

Scores

CVSS v3 3.3
EPSS 0.0019
EPSS Percentile 9.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (9)
linux/Kernel 5.13.0 - 5.19.12linux
Linux/Linux < 5.13
Linux/Linux 5.13
Linux/Linux 5.19.12 - 5.19.*
Linux/Linux 5476b5dd82c8bb9d0dd426f96575ae656cede140 - 49523a4732204bdacbf3941a016503ddb4ddb3b9
Linux/Linux 5476b5dd82c8bb9d0dd426f96575ae656cede140 - fa30a81f255a56cccd89552cd6ce7ea6e8d8acc4
Linux/Linux 6.0
linux/linux_kernel 6.0 rc1 (3 CPE variants)
linux/linux_kernel 5.13 - 5.19.12
Published Apr 28, 2024
Tracked Since Feb 18, 2026