First published: Sun Mar 19 2023(Updated: )
In the Linux kernel before 6.1.3, fs/ntfs3/inode.c does not validate the attribute name offset. An unhandled page fault may occur.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | >=5.15<5.15.87 | |
Linux Kernel | >=5.16<6.0.17 | |
Linux Kernel | >=6.1<6.1.3 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.123-1 6.1.128-1 6.12.12-1 6.12.15-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-48424 has a significant severity as it leads to unhandled page faults in the Linux kernel.
To remediate CVE-2022-48424, update the Linux Kernel to versions 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.11-1, or 6.12.12-1.
CVE-2022-48424 affects Linux Kernel versions prior to 6.1.3 and versions from 5.15 to 6.0.17.
CVE-2022-48424 involves the fs/ntfs3/inode.c component of the Linux Kernel.
CVE-2022-48424 was addressed in the kernel updates released after version 6.1.3, making it a historical vulnerability.