CVE-2022-49833

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-49833
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-49833.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-49833
Downstream
Published
2025-05-01T14:09:51Z
Modified
2025-10-21T11:11:21.167834Z
Summary
btrfs: zoned: clone zoned device info when cloning a device
Details

In the Linux kernel, the following vulnerability has been resolved:

btrfs: zoned: clone zoned device info when cloning a device

When cloning a btrfsdevice, we're not cloning the associated btrfszoneddeviceinfo structure of the device in case of a zoned filesystem.

Later on this leads to a NULL pointer dereference when accessing the device's zone_info for instance when setting a zone as active.

This was uncovered by fstests' testcase btrfs/161.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5b316468983dfa9473ff0f1c42e4e30b4c267141
Fixed
ad88cabcec942c033f980cd1e28d56ecdaf5f3b8
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5b316468983dfa9473ff0f1c42e4e30b4c267141
Fixed
21e61ec6d0bb786818490e926aa9aeb4de95ad0d

Affected versions

v5.*

v5.10
v5.11
v5.11-rc1
v5.11-rc2
v5.11-rc3
v5.11-rc4
v5.11-rc5
v5.11-rc6
v5.11-rc7
v5.12
v5.12-rc1
v5.12-rc1-dontuse
v5.12-rc2
v5.12-rc3
v5.12-rc4
v5.12-rc5
v5.12-rc6
v5.12-rc7
v5.12-rc8
v5.13
v5.13-rc1
v5.13-rc2
v5.13-rc3
v5.13-rc4
v5.13-rc5
v5.13-rc6
v5.13-rc7
v5.14
v5.14-rc1
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.17
v5.17-rc1
v5.17-rc2
v5.17-rc3
v5.17-rc4
v5.17-rc5
v5.17-rc6
v5.17-rc7
v5.17-rc8
v5.18
v5.18-rc1
v5.18-rc2
v5.18-rc3
v5.18-rc4
v5.18-rc5
v5.18-rc6
v5.18-rc7
v5.19
v5.19-rc1
v5.19-rc2
v5.19-rc3
v5.19-rc4
v5.19-rc5
v5.19-rc6
v5.19-rc7
v5.19-rc8

v6.*

v6.0
v6.0-rc1
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.0.1
v6.0.2
v6.0.3
v6.0.4
v6.0.5
v6.0.6
v6.0.7
v6.0.8

Database specific

vanir_signatures

[
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad88cabcec942c033f980cd1e28d56ecdaf5f3b8",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "304595847524928969536723665466148792779",
                "197607694443986063620349249726435132536",
                "220620693065123139342697786944644900997"
            ]
        },
        "target": {
            "file": "fs/btrfs/zoned.c"
        },
        "id": "CVE-2022-49833-04ca2843",
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad88cabcec942c033f980cd1e28d56ecdaf5f3b8",
        "signature_version": "v1",
        "digest": {
            "function_hash": "223391601899111793872426717603115485547",
            "length": 792.0
        },
        "target": {
            "function": "clone_fs_devices",
            "file": "fs/btrfs/volumes.c"
        },
        "id": "CVE-2022-49833-74020119",
        "deprecated": false,
        "signature_type": "Function"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@21e61ec6d0bb786818490e926aa9aeb4de95ad0d",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "304595847524928969536723665466148792779",
                "197607694443986063620349249726435132536",
                "220620693065123139342697786944644900997"
            ]
        },
        "target": {
            "file": "fs/btrfs/zoned.c"
        },
        "id": "CVE-2022-49833-8a3fa45e",
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@21e61ec6d0bb786818490e926aa9aeb4de95ad0d",
        "signature_version": "v1",
        "digest": {
            "function_hash": "223391601899111793872426717603115485547",
            "length": 792.0
        },
        "target": {
            "function": "clone_fs_devices",
            "file": "fs/btrfs/volumes.c"
        },
        "id": "CVE-2022-49833-a69429a9",
        "deprecated": false,
        "signature_type": "Function"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@21e61ec6d0bb786818490e926aa9aeb4de95ad0d",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "92301549721869711638880677378785186849",
                "156561367010085243207544439941988763087",
                "286828624236346318048959575988029039368",
                "14450338966941247700271621378517131051",
                "186322931832830494593575824274211508344",
                "230604787022100754538673713838613944126",
                "131573618660783103143541638444723661907"
            ]
        },
        "target": {
            "file": "fs/btrfs/zoned.h"
        },
        "id": "CVE-2022-49833-b646703d",
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad88cabcec942c033f980cd1e28d56ecdaf5f3b8",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "92301549721869711638880677378785186849",
                "156561367010085243207544439941988763087",
                "286828624236346318048959575988029039368",
                "14450338966941247700271621378517131051",
                "186322931832830494593575824274211508344",
                "230604787022100754538673713838613944126",
                "131573618660783103143541638444723661907"
            ]
        },
        "target": {
            "file": "fs/btrfs/zoned.h"
        },
        "id": "CVE-2022-49833-b7afb46a",
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@21e61ec6d0bb786818490e926aa9aeb4de95ad0d",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "139386677224447606642247203048373783116",
                "166361533081573151662086911689302570249",
                "90928251320166073493208087733436938131"
            ]
        },
        "target": {
            "file": "fs/btrfs/volumes.c"
        },
        "id": "CVE-2022-49833-ca7e3f59",
        "deprecated": false,
        "signature_type": "Line"
    },
    {
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad88cabcec942c033f980cd1e28d56ecdaf5f3b8",
        "signature_version": "v1",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "139386677224447606642247203048373783116",
                "166361533081573151662086911689302570249",
                "90928251320166073493208087733436938131"
            ]
        },
        "target": {
            "file": "fs/btrfs/volumes.c"
        },
        "id": "CVE-2022-49833-f0480851",
        "deprecated": false,
        "signature_type": "Line"
    }
]

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
6.0.9