#VU115906 Out-of-bounds read in Linux kernel - CVE-2022-50403
Published: September 19, 2025 / Updated: September 22, 2025
Vulnerability identifier: #VU115906
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2022-50403
CWE-ID: CWE-125
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerable software:
Linux kernel
Linux kernel
Software vendor:
Linux Foundation
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to an out-of-bounds read error within the fs/ext4/ext4.h. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's repository.
External links
- https://git.kernel.org/stable/c/205ac16628aca9093931fcbdb4bcd00d0eb94132
- https://git.kernel.org/stable/c/3bf678a0f9c017c9ba7c581541dbc8453452a7ae
- https://git.kernel.org/stable/c/4690a4bdcf1470cb161aff1be30bd143b9dffd89
- https://git.kernel.org/stable/c/5da9e607547f73dc7a643f35b0487992fd66910f
- https://git.kernel.org/stable/c/743e9d708743d98464ccbd56e820d87dc6d1d629
- https://git.kernel.org/stable/c/7753d6657873a2523a9989e6c09090cd503bbcda
- https://git.kernel.org/stable/c/d7f93fc6fba8ff017be871be7edf8614a785ccad
- https://git.kernel.org/stable/c/dd5639d36a5e4e42fd0fe05cc0b2ad9ddd3fca9d
- https://git.kernel.org/stable/c/f9cd6980800bbfd11bf94eb5f942049d4d4eaa52
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.163