SB20251001146 - Buffer overflow in Linux kernel fs
Published: October 1, 2025 Updated: October 27, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Buffer overflow (CVE-ID: CVE-2022-50466)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to memory corruption within the load_elf_binary() function in fs/binfmt_elf.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/265b6fb780f57d10449a40e94219b28fa52479cc
- https://git.kernel.org/stable/c/594d2a14f2168c09b13b114c3d457aa939403e52
- https://git.kernel.org/stable/c/706215300411d48db6b51a5832b872632a84bbc1
- https://git.kernel.org/stable/c/acd9b4914f1c5928c7ae8ebc623d6291eb1a573a
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.0.7