Linux Kernel Vulnerability in Inode Count Validation by The Linux Foundation
CVE-2022-50205
What is CVE-2022-50205?
A vulnerability in the Linux Kernel affects the integrity of inode counts in file systems. The issue arises from insufficient validity checks that verify whether the number of inodes stored in the superblock aligns with the computed values derived from the inode allocation per group. This oversight may lead to system crashes when operating on corrupted file systems. Recent updates have integrated additional checks to ensure each group contains at least one block of inodes, thereby improving the kernel's resilience against filesystem corruption.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 0bcdc31094a12b4baf59e241feabc9787cf635fa
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 07303a9abe3a997d9864fb4315e34b5acfe8fc25
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2