CVE-2022-49168
Published: Feb 26, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: btrfs: do not clean up repair bio if submit fails The submit helper will always run bio_endio() on the bio if it fails to submit, so cleaning up the bio just leads to a variety of use-after-free and NULL pointer dereference bugs because we race with the endio function that is cleaning up the bio. Instead just return BLK_STS_OK as the repair function has to continue to process the rest of the pages, and the endio for the repair bio will do the appropriate cleanup for the page that it was given.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 6c387ab20db15f2bd448f7c508e2638101b16ea1 - < e7e1d15d2bd8c373cf621614ddd17971a2132713affected 6c387ab20db15f2bd448f7c508e2638101b16ea1 - < 7170875083254b51fcc5d67f96640977083f481eaffected 6c387ab20db15f2bd448f7c508e2638101b16ea1 - < e76c78c48902dae6fa612749f59162bca0a79e0baffected 6c387ab20db15f2bd448f7c508e2638101b16ea1 - < d1cb11fb45ebbb1e7dfe5e9038b32ea72c184b14affected 6c387ab20db15f2bd448f7c508e2638101b16ea1 - < 8cbc3001a3264d998d6b6db3e23f935c158abd4d |
Linux | Linux | affected 3.18unaffected 0 - < 3.18unaffected 5.10.248 - <= 5.10.*unaffected 5.15.184 - <= 5.15.*unaffected 5.16.19 - <= 5.16.*+2 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now