PT-2025-53112 · Linux+1 · Linux Kernel+1

CVE-2022-50746

·

Published

2025-12-24

·

Updated

2026-08-23

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains an issue where the extent length for uncompressed pclusters is not validated, potentially leading to a use-after-free condition. This was identified through syzkaller fuzzing, specifically reported at https://syzkaller.appspot.com/bug?extid=2ae90e873e97f1faf6f2. The issue involves a logical length exceeding its physical length. The patch addresses this by adding a check for extent length validity.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2022-50746
OESA-2026-1075
OESA-2026-1076

Affected Products

Debian
Linux Kernel