CVE-2022-49739

Source
https://cve.org/CVERecord?id=CVE-2022-49739
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49739.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-49739
Downstream
Related
Published
2025-03-27T16:42:51.609Z
Modified
2026-03-12T03:25:43.061698Z
Summary
gfs2: Always check inode size of inline inodes
Details

In the Linux kernel, the following vulnerability has been resolved:

gfs2: Always check inode size of inline inodes

Check if the inode size of stuffed (inline) inodes is within the allowed range when reading inodes from disk (gfs2dinodein()). This prevents us from on-disk corruption.

The two checks in stuffedreadpage() and gfs2unstuffer_page() that just truncate inline data to the maximum allowed size don't actually make sense, and they can be removed now as well.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/49xxx/CVE-2022-49739.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b3b94faa5fe5968827ba0640ee9fba4b3e7f736e
Fixed
45df749f827c286adbc951f2a4865b67f0442ba9
Fixed
4d4cb76636134bf9a0c9c3432dae936f99954586
Fixed
7c414f6f06e9a3934901b6edc3177ae5a1e07094
Fixed
46c9088cabd4d0469fdb61ac2a9c5003057fe94d
Fixed
d458a0984429c2d47e60254f5bc4119cbafe83a2
Fixed
70376c7ff31221f1d21db5611d8209e677781d3a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-49739.json"