CVE-2022-49279

Source
https://cve.org/CVERecord?id=CVE-2022-49279
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49279.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49279
Downstream
Related
Published
2025-02-26T01:56:22.051Z
Modified
2026-04-11T12:43:49.694086Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
NFSD: prevent integer overflow on 32 bit systems
Details

In the Linux kernel, the following vulnerability has been resolved:

NFSD: prevent integer overflow on 32 bit systems

On a 32 bit system, the "len * sizeof(*p)" operation can have an integer overflow.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49279.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
37c88763def8474bc0972fbd1adb0d21670104b7
Fixed
3a2789e8ccb4a3e2a631f6817a2d3bb98b8c4fd8
Fixed
ce1aa09cc14ed625104acc2d487bd92b9a88efe2
Fixed
7af164fa2f1abc577d357d22d83a2f3490875d7e
Fixed
303cd6173dce0a28d26526c77814eb90a41bd898
Fixed
79b1c54fc6ce09ee0d5fe088bb3de26ae2150e3c
Fixed
e4195d27306ea468a6dc3a27af6f586709951229
Fixed
23a9dbbe0faf124fc4c139615633b9d12a3a89ef

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49279.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.17.0
Fixed
4.19.238
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.189
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.110
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.33
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
5.16.19
Type
ECOSYSTEM
Events
Introduced
5.17.0
Fixed
5.17.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49279.json"