CVE-2022-48747

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-48747
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-48747.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-48747
Downstream
Related
Published
2024-06-20T11:13:29Z
Modified
2025-10-14T21:02:03.684080Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
block: Fix wrong offset in bio_truncate()
Details

In the Linux kernel, the following vulnerability has been resolved:

block: Fix wrong offset in bio_truncate()

biotruncate() clears the buffer outside of last block of bdev, however current biotruncate() is using the wrong offset of page. So it can return the uninitialized data.

This happened when both of truncated/corrupted FS and userspace (via bdev) are trying to read the last of bdev.

References

Affected packages

Linux

Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.176
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.96
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.15.19
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.16.5

Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1da177e4c3f4
Fixed
6cbf4c731d78

Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1da177e4c3f4
Fixed
b63e120189fd

Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1da177e4c3f4
Fixed
4633a79ff8bc

Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1da177e4c3f4
Fixed
941d5180c430

Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1da177e4c3f4
Fixed
3ee859e384d4

Git

git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
943cd69efac437d82a7aea0659fccbcc071730de
Fixed
6cbf4c731d7812518cd857c2cfc3da9fd120f6ae
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
85a8ce62c2eabe28b9d76ca4eecf37922402df93
Fixed
b63e120189fd92aff00096d11e2fc5253f60248b
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
85a8ce62c2eabe28b9d76ca4eecf37922402df93
Fixed
4633a79ff8bc82770486a063a08b55e5162521d8
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
85a8ce62c2eabe28b9d76ca4eecf37922402df93
Fixed
941d5180c430ce5b0f7a3622ef9b76077bfa3d82
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
85a8ce62c2eabe28b9d76ca4eecf37922402df93
Fixed
3ee859e384d453d6ac68bfd5971f630d9fa46ad3

Affected versions

v5.*

v5.10
v5.10-rc1
v5.10-rc2
v5.10-rc3
v5.10-rc4
v5.10-rc5
v5.10-rc6
v5.10-rc7
v5.10.1
v5.10.10
v5.10.11
v5.10.12
v5.10.13
v5.10.14
v5.10.15
v5.10.16
v5.10.17
v5.10.18
v5.10.19
v5.10.2
v5.10.20
v5.10.21
v5.10.22
v5.10.23
v5.10.24
v5.10.25
v5.10.26
v5.10.27
v5.10.28
v5.10.29
v5.10.3
v5.10.30
v5.10.31
v5.10.32
v5.10.33
v5.10.34
v5.10.35
v5.10.36
v5.10.37
v5.10.38
v5.10.39
v5.10.4
v5.10.40
v5.10.41
v5.10.42
v5.10.43
v5.10.44
v5.10.45
v5.10.46
v5.10.47
v5.10.48
v5.10.49
v5.10.5
v5.10.50
v5.10.51
v5.10.52
v5.10.53
v5.10.54
v5.10.55
v5.10.56
v5.10.57
v5.10.58
v5.10.59
v5.10.6
v5.10.60
v5.10.61
v5.10.62
v5.10.63
v5.10.64
v5.10.65
v5.10.66
v5.10.67
v5.10.68
v5.10.69
v5.10.7
v5.10.70
v5.10.71
v5.10.72
v5.10.73
v5.10.74
v5.10.75
v5.10.76
v5.10.77
v5.10.78
v5.10.79
v5.10.8
v5.10.80
v5.10.81
v5.10.82
v5.10.83
v5.10.84
v5.10.85
v5.10.86
v5.10.87
v5.10.88
v5.10.89
v5.10.9
v5.10.90
v5.10.91
v5.10.92
v5.10.93
v5.10.94
v5.10.95
v5.11
v5.11-rc1
v5.11-rc2
v5.11-rc3
v5.11-rc4
v5.11-rc5
v5.11-rc6
v5.11-rc7
v5.12
v5.12-rc1
v5.12-rc1-dontuse
v5.12-rc2
v5.12-rc3
v5.12-rc4
v5.12-rc5
v5.12-rc6
v5.12-rc7
v5.12-rc8
v5.13
v5.13-rc1
v5.13-rc2
v5.13-rc3
v5.13-rc4
v5.13-rc5
v5.13-rc6
v5.13-rc7
v5.14
v5.14-rc1
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.15.1
v5.15.10
v5.15.11
v5.15.12
v5.15.13
v5.15.14
v5.15.15
v5.15.16
v5.15.17
v5.15.18
v5.15.2
v5.15.3
v5.15.4
v5.15.5
v5.15.6
v5.15.7
v5.15.8
v5.15.9
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.16.1
v5.16.2
v5.16.3
v5.16.4
v5.4.10
v5.4.100
v5.4.101
v5.4.102
v5.4.103
v5.4.104
v5.4.105
v5.4.106
v5.4.107
v5.4.108
v5.4.109
v5.4.11
v5.4.110
v5.4.111
v5.4.112
v5.4.113
v5.4.114
v5.4.115
v5.4.116
v5.4.117
v5.4.118
v5.4.119
v5.4.12
v5.4.120
v5.4.121
v5.4.122
v5.4.123
v5.4.124
v5.4.125
v5.4.126
v5.4.127
v5.4.128
v5.4.129
v5.4.13
v5.4.130
v5.4.131
v5.4.132
v5.4.133
v5.4.134
v5.4.135
v5.4.136
v5.4.137
v5.4.138
v5.4.139
v5.4.14
v5.4.140
v5.4.141
v5.4.142
v5.4.143
v5.4.144
v5.4.145
v5.4.146
v5.4.147
v5.4.148
v5.4.149
v5.4.15
v5.4.150
v5.4.151
v5.4.152
v5.4.153
v5.4.154
v5.4.155
v5.4.156
v5.4.157
v5.4.158
v5.4.159
v5.4.16
v5.4.160
v5.4.161
v5.4.162
v5.4.163
v5.4.164
v5.4.165
v5.4.166
v5.4.167
v5.4.168
v5.4.169
v5.4.17
v5.4.170
v5.4.171
v5.4.172
v5.4.173
v5.4.174
v5.4.175
v5.4.18
v5.4.19
v5.4.20
v5.4.21
v5.4.22
v5.4.23
v5.4.24
v5.4.25
v5.4.26
v5.4.27
v5.4.28
v5.4.29
v5.4.30
v5.4.31
v5.4.32
v5.4.33
v5.4.34
v5.4.35
v5.4.36
v5.4.37
v5.4.38
v5.4.39
v5.4.40
v5.4.41
v5.4.42
v5.4.43
v5.4.44
v5.4.45
v5.4.46
v5.4.47
v5.4.48
v5.4.49
v5.4.50
v5.4.51
v5.4.52
v5.4.53
v5.4.54
v5.4.55
v5.4.56
v5.4.57
v5.4.58
v5.4.59
v5.4.60
v5.4.61
v5.4.62
v5.4.63
v5.4.64
v5.4.65
v5.4.66
v5.4.67
v5.4.68
v5.4.69
v5.4.70
v5.4.71
v5.4.72
v5.4.73
v5.4.74
v5.4.75
v5.4.76
v5.4.77
v5.4.78
v5.4.79
v5.4.80
v5.4.81
v5.4.82
v5.4.83
v5.4.84
v5.4.85
v5.4.86
v5.4.87
v5.4.88
v5.4.89
v5.4.9
v5.4.90
v5.4.91
v5.4.92
v5.4.93
v5.4.94
v5.4.95
v5.4.96
v5.4.97
v5.4.98
v5.4.99
v5.5
v5.5-rc3
v5.5-rc4
v5.5-rc5
v5.5-rc6
v5.5-rc7
v5.6
v5.6-rc1
v5.6-rc2
v5.6-rc3
v5.6-rc4
v5.6-rc5
v5.6-rc6
v5.6-rc7
v5.7
v5.7-rc1
v5.7-rc2
v5.7-rc3
v5.7-rc4
v5.7-rc5
v5.7-rc6
v5.7-rc7
v5.8
v5.8-rc1
v5.8-rc2
v5.8-rc3
v5.8-rc4
v5.8-rc5
v5.8-rc6
v5.8-rc7
v5.9
v5.9-rc1
v5.9-rc2
v5.9-rc3
v5.9-rc4
v5.9-rc5
v5.9-rc6
v5.9-rc7
v5.9-rc8

Database specific

{
    "vanir_signatures": [
        {
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "file": "block/bio.c",
                "function": "bio_truncate"
            },
            "signature_version": "v1",
            "digest": {
                "length": 529.0,
                "function_hash": "27447440083736779396782263450960436851"
            },
            "id": "CVE-2022-48747-239a2a2f",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3ee859e384d453d6ac68bfd5971f630d9fa46ad3"
        },
        {
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "file": "block/bio.c",
                "function": "bio_truncate"
            },
            "signature_version": "v1",
            "digest": {
                "length": 522.0,
                "function_hash": "241695932101945669243589188315611332085"
            },
            "id": "CVE-2022-48747-270826b6",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b63e120189fd92aff00096d11e2fc5253f60248b"
        },
        {
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "block/bio.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "99861609424793468542241780714649815568",
                    "328770999157353096571907019270330413561",
                    "16197537537743074658522694763379360050",
                    "146390951701175446788367115974317911755"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48747-34cf5e70",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4633a79ff8bc82770486a063a08b55e5162521d8"
        },
        {
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "file": "block/bio.c",
                "function": "bio_truncate"
            },
            "signature_version": "v1",
            "digest": {
                "length": 529.0,
                "function_hash": "27447440083736779396782263450960436851"
            },
            "id": "CVE-2022-48747-59ad105b",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@941d5180c430ce5b0f7a3622ef9b76077bfa3d82"
        },
        {
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "file": "block/bio.c",
                "function": "bio_truncate"
            },
            "signature_version": "v1",
            "digest": {
                "length": 522.0,
                "function_hash": "241695932101945669243589188315611332085"
            },
            "id": "CVE-2022-48747-952fee9a",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6cbf4c731d7812518cd857c2cfc3da9fd120f6ae"
        },
        {
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "block/bio.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "99861609424793468542241780714649815568",
                    "328770999157353096571907019270330413561",
                    "16197537537743074658522694763379360050",
                    "146390951701175446788367115974317911755"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48747-af9457c8",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6cbf4c731d7812518cd857c2cfc3da9fd120f6ae"
        },
        {
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "block/bio.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "99861609424793468542241780714649815568",
                    "328770999157353096571907019270330413561",
                    "16197537537743074658522694763379360050",
                    "146390951701175446788367115974317911755"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48747-d273a6b4",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@941d5180c430ce5b0f7a3622ef9b76077bfa3d82"
        },
        {
            "deprecated": false,
            "signature_type": "Function",
            "target": {
                "file": "block/bio.c",
                "function": "bio_truncate"
            },
            "signature_version": "v1",
            "digest": {
                "length": 522.0,
                "function_hash": "241695932101945669243589188315611332085"
            },
            "id": "CVE-2022-48747-d66fd59a",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4633a79ff8bc82770486a063a08b55e5162521d8"
        },
        {
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "block/bio.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "99861609424793468542241780714649815568",
                    "328770999157353096571907019270330413561",
                    "16197537537743074658522694763379360050",
                    "146390951701175446788367115974317911755"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48747-e1153915",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3ee859e384d453d6ac68bfd5971f630d9fa46ad3"
        },
        {
            "deprecated": false,
            "signature_type": "Line",
            "target": {
                "file": "block/bio.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "99861609424793468542241780714649815568",
                    "328770999157353096571907019270330413561",
                    "16197537537743074658522694763379360050",
                    "146390951701175446788367115974317911755"
                ],
                "threshold": 0.9
            },
            "id": "CVE-2022-48747-e74073ce",
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b63e120189fd92aff00096d11e2fc5253f60248b"
        }
    ]
}