udf: Fix preallocation discarding at indirect extent boundary
Published Oct 21, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.25%
Description
When preallocation extent is the first one in the extent block, the code would corrupt extent tree header instead. Fix the problem and use udf_delete_aext() for deleting extent to avoid some code duplication.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 2.6.12StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<2.6.12
- Version 4.14.303StatusunaffectedConstraints<=4.14.*
- Version 4.19.270StatusunaffectedConstraints<=4.19.*
- Version 4.9.337StatusunaffectedConstraints<=4.9.*
- Version 5.10.161StatusunaffectedConstraints<=5.10.*
- Version 5.15.85StatusunaffectedConstraints<=5.15.*
- Version 5.4.229StatusunaffectedConstraints<=5.4.*
- Version 6.0.15StatusunaffectedConstraints<=6.0.*
- Version 6.1.1StatusunaffectedConstraints<=6.1.*
- Version 6.2StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- < 4.9.337
- ≥ 4.10 · < 4.14.303
- ≥ 4.15 · < 4.19.270
- ≥ 4.20 · < 5.4.229
- ≥ 5.5 · < 5.10.161
- ≥ 5.11 · < 5.15.85
- ≥ 5.16 · < 6.0.15
- 6.1
- 6.1.1
No data.
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-rt
Out of support scope
Red Hat Enterprise Linux 8
kernel
Will not fix
Red Hat Enterprise Linux 8
kernel-rt
Will not fix
Red Hat Enterprise Linux 9
kernel
Will not fix
Red Hat Enterprise Linux 9
kernel-rt
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 8 | kernel | Will not fix | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Will not fix | n/a |
| Red Hat Enterprise Linux 9 | kernel | Will not fix | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
To mitigate this issue, prevent the `udf` kernel module from loading by blacklisting it. This can be achieved by creating a configuration file: ```bash echo "blacklist udf" | sudo tee /etc/modprobe.d/udf-blacklist.conf ``` After creating the file, regenerate the initramfs and reboot the system for the changes to take effect. This may impact systems that rely on the UDF filesystem for mounting media.
References (15)
- https://access.redhat.com/security/cve/CVE-2022-48946 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2320738 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-53825 Advisory
- https://git.kernel.org/stable/c/12a88f572d6d94b5c0b72e2d1782cc2e96ac06cf Patch
- https://git.kernel.org/stable/c/1a075f4a549481ce6e8518d8379f193ccec6b746 Patch
- https://git.kernel.org/stable/c/4d835efd561dfb9bf5409f11f4ecd428d5d29226 Patch
- https://git.kernel.org/stable/c/63dbbd8f1499b0a161e701a04aa50148d60bd1f7 Patch
- https://git.kernel.org/stable/c/72f651c96c8aadf087fd782d551bf7db648a8c2e Patch
- https://git.kernel.org/stable/c/7665857f88557c372da35534165721156756f77f Patch
- https://git.kernel.org/stable/c/ae56d9a017724f130cf1a263dd82a78d2a6e3852 Patch
- https://git.kernel.org/stable/c/c8b6fa4511a7900db9fb0353b630d4d2ed1ba99c Patch
- https://git.kernel.org/stable/c/cfe4c1b25dd6d2f056afc00b7c98bcb3dd0b1fc3 Patch
- https://lore.kernel.org/linux-cve-announce/2024102138-CVE-2022-48946-5989@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-48946
- https://www.cve.org/CVERecord?id=CVE-2022-48946
Change history (0)
No recorded changes yet.