CVE Database
/

CVE-2022-49343

Back to search

CVE-2022-49343

Published: Feb 26, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: avoid cycles in directory h-tree A maliciously corrupted filesystem can contain cycles in the h-tree stored inside a directory. That can easily lead to the kernel corrupting tree nodes that were already verified under its hands while doing a node split and consequently accessing unallocated memory. Fix the problem by verifying traversed block numbers are unique.

VendorProductVersions

Linux

Linux

affected
ac27a0ec112a089f1a5102bc8dffc79c8c815571 - < 24b8206fec1db21d7e82f21f0b2ff5e5672cf5b3
affected
ac27a0ec112a089f1a5102bc8dffc79c8c815571 - < b3ad9ff6f06c1dc6abf7437691c88ca3d6da3ac0
affected
ac27a0ec112a089f1a5102bc8dffc79c8c815571 - < e157c8f87e8fac112d6c955e69a60cdb9bc80a60
affected
ac27a0ec112a089f1a5102bc8dffc79c8c815571 - < ff4cafa51762da3824881a9000ca421d4b78b138
affected
ac27a0ec112a089f1a5102bc8dffc79c8c815571 - < 3a3ce941645407cd0b0b7f01ad9e2ea3770f46cc

+3 more versions

Linux

Linux

affected
2.6.19
unaffected
0 - < 2.6.19
unaffected
4.14.283 - <= 4.14.*
unaffected
4.19.247 - <= 4.19.*
unaffected
5.4.198 - <= 5.4.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now