{"id":"CVE-2022-48423","title":"In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate resident attribute names","summary":"In the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate resident attribute names. An out-of-bounds write may occur.","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-787","CWE-787"],"vendor":"linux","product":"linux_kernel","affected":["linux_kernel >= 5.15, < 5.15.87","linux_kernel >= 5.16, < 6.0.17","linux_kernel >= 6.1, < 6.1.3"],"patched":["linux_kernel 6.1.3"],"published":"2023-03-19","updated":"2026-10-02","sourceUpdated":"2026-10-02T13:58:26.843","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2022-48423","references":[{"url":"https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.3","label":"cve@mitre.org"},{"url":"https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=54e45702b648b7c0000e90b3e9b890e367e16ea8","label":"cve@mitre.org"},{"url":"https://security.netapp.com/advisory/ntap-20230505-0003/","label":"cve@mitre.org"},{"url":"https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.3","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=54e45702b648b7c0000e90b3e9b890e367e16ea8","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://security.netapp.com/advisory/ntap-20230505-0003/","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd"],"epss":0.00266,"epssPercentile":0.16758,"ingestedAt":"2026-10-02T14:20:32.551Z","slug":"CVE-2022-48423","body":"## Overview\n\nIn the Linux kernel before 6.1.3, fs/ntfs3/record.c does not validate resident attribute names. An out-of-bounds write may occur.\n\n## Affected\n\n- `linux_kernel >= 5.15, < 5.15.87`\n- `linux_kernel >= 5.16, < 6.0.17`\n- `linux_kernel >= 6.1, < 6.1.3`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `linux_kernel 6.1.3`","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}