CVE-2025-22019

Source
https://cve.org/CVERecord?id=CVE-2025-22019
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-22019.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-22019
Downstream
Published
2025-04-16T10:20:36.342Z
Modified
2026-03-12T19:59:28.530907Z
Summary
bcachefs: bch2_ioctl_subvolume_destroy() fixes
Details

In the Linux kernel, the following vulnerability has been resolved:

bcachefs: bch2ioctlsubvolume_destroy() fixes

bch2evictsubvolume_inodes() was getting stuck - due to incorrectly pruning the dcache.

Also, fix missing permissions checks.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/22xxx/CVE-2025-22019.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1c6fdbd8f2465ddfb73a01ec620cbf3d14044e1a
Fixed
9e6e83e1e2d01b99e70cd7812d7f758a8def9fc8
Fixed
82383abd39abd635511b8956284a5cc8134c4dc1
Fixed
558317a5c61045d460a37372181e7b43c0c002bb
Fixed
707549600c4a012ed71c0204a7992a679880bf33

Affected versions

v6.*
v6.10
v6.10-rc1
v6.10-rc2
v6.10-rc3
v6.10-rc4
v6.10-rc5
v6.10-rc6
v6.10-rc7
v6.11
v6.11-rc1
v6.11-rc2
v6.11-rc3
v6.11-rc4
v6.11-rc5
v6.11-rc6
v6.11-rc7
v6.12
v6.12-rc1
v6.12-rc2
v6.12-rc3
v6.12-rc4
v6.12-rc5
v6.12-rc6
v6.12-rc7
v6.12.1
v6.12.10
v6.12.11
v6.12.12
v6.12.13
v6.12.14
v6.12.15
v6.12.16
v6.12.17
v6.12.18
v6.12.19
v6.12.2
v6.12.20
v6.12.21
v6.12.3
v6.12.4
v6.12.5
v6.12.6
v6.12.7
v6.12.8
v6.12.9
v6.13
v6.13-rc1
v6.13-rc2
v6.13-rc3
v6.13-rc4
v6.13-rc5
v6.13-rc6
v6.13-rc7
v6.13.1
v6.13.2
v6.13.3
v6.13.4
v6.13.5
v6.13.6
v6.13.7
v6.13.8
v6.13.9
v6.14
v6.14-rc1
v6.14-rc2
v6.14-rc3
v6.14-rc4
v6.14-rc5
v6.14-rc6
v6.14-rc7
v6.14.1
v6.6
v6.6-rc2
v6.6-rc3
v6.6-rc4
v6.6-rc5
v6.6-rc6
v6.6-rc7
v6.7
v6.7-rc1
v6.7-rc2
v6.7-rc3
v6.7-rc4
v6.7-rc5
v6.7-rc6
v6.7-rc7
v6.7-rc8
v6.8
v6.8-rc1
v6.8-rc2
v6.8-rc3
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.9
v6.9-rc1
v6.9-rc2
v6.9-rc3
v6.9-rc4
v6.9-rc5
v6.9-rc6
v6.9-rc7

Database specific

vanir_signatures
[
    {
        "signature_type": "Function",
        "deprecated": false,
        "id": "CVE-2025-22019-67549212",
        "target": {
            "file": "fs/bcachefs/fs-ioctl.c",
            "function": "bch2_ioctl_subvolume_destroy"
        },
        "digest": {
            "length": 677.0,
            "function_hash": "130875564156342777060948490784009136668"
        },
        "signature_version": "v1",
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@82383abd39abd635511b8956284a5cc8134c4dc1"
    },
    {
        "signature_type": "Line",
        "deprecated": false,
        "id": "CVE-2025-22019-bb3b66d4",
        "target": {
            "file": "fs/bcachefs/fs-ioctl.c"
        },
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "31443528288296282298665245028412276992",
                "140357521513925906070195906849050292403",
                "91972118152576726967910979260845117021",
                "170631635579912108910652188878548340464",
                "46367518381557181212358457155221137694",
                "292206613969518976142244530019831367239",
                "211594643220951050550479506701221373620"
            ]
        },
        "signature_version": "v1",
        "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@82383abd39abd635511b8956284a5cc8134c4dc1"
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-22019.json"