CVE-2022-48667
In the Linux kernel, the following vulnerability has been resolved: smb3: fix temporary data corruption in insert range insert range doesn't discard the affected cached region so can risk temporarily corrupting file data.
Does this matter?
Lower severity and a low EPSS score (0.19%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: smb3: fix temporary data corruption in insert range insert range doesn't discard the affected cached region so can risk temporarily corrupting file data. Also includes some minor cleanup (avoiding rereading inode size repeatedly unnecessarily) to make it clearer.
- CVSS 3.1
- 3.3 LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
- EPSS
- 0.19% probability · 9th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/0cdde8460c304283d4ebe3f767a70215d1ab9d4ePatch
- https://git.kernel.org/stable/c/9c8b7a293f50253e694f19161c045817a938e551Patch
- https://git.kernel.org/stable/c/0cdde8460c304283d4ebe3f767a70215d1ab9d4ePatch
- https://git.kernel.org/stable/c/9c8b7a293f50253e694f19161c045817a938e551Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.