CVE-2022-50367: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: fs: fix UAF/GPF bug in nilfs_mdt_destroy In alloc_inode, inode_init_always() could return -ENOMEM if security_inode_alloc() fails, which causes inode->i_private uninitialized. Then nilfs_is_metadata_file_inode() returns true and nilfs_free_inode() wrongly calls nilfs_mdt_destroy(), which frees the uninitialized inode->i_private and leads to crashes(e.g., UAF/GPF). Fix this by moving security_inode_alloc just prior to this_cpu_inc(nr_inodes)
Affected products
- Linux Linux Kernel: before 4.9.331 (fixed in 4.9.331); from 4.10, before 4.14.296 (fixed in 4.14.296); from 4.15, before 4.19.262 (fixed in 4.19.262); from 4.20, before 5.4.218 (fixed in 5.4.218); from 5.5, before 5.10.148 (fixed in 5.10.148); from 5.11, before 5.15.73 (fixed in 5.15.73); …
Published 2025-09-17. Last modified 2026-06-17.