CVE-2022-48946: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: udf: Fix preallocation discarding at indirect extent boundary When preallocation extent is the first one in the extent block, the code would corrupt extent tree header instead. Fix the problem and use udf_delete_aext() for deleting extent to avoid some code duplication.

Affected products

  • Linux Linux Kernel: before 4.9.337 (fixed in 4.9.337); from 4.10, before 4.14.303 (fixed in 4.14.303); from 4.15, before 4.19.270 (fixed in 4.19.270); from 4.20, before 5.4.229 (fixed in 5.4.229); from 5.5, before 5.10.161 (fixed in 5.10.161); from 5.11, before 5.15.85 (fixed in 5.15.85); …

Published 2024-10-21. Last modified 2026-06-17.