{"id":"CVE-2022-50013","summary":"f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page()\n\nAs Dipanjan Das \u003cmail.dipanjan.das@gmail.com\u003e reported, syzkaller\nfound a f2fs bug as below:\n\nRIP: 0010:f2fs_new_node_page+0x19ac/0x1fc0 fs/f2fs/node.c:1295\nCall Trace:\n write_all_xattrs fs/f2fs/xattr.c:487 [inline]\n __f2fs_setxattr+0xe76/0x2e10 fs/f2fs/xattr.c:743\n f2fs_setxattr+0x233/0xab0 fs/f2fs/xattr.c:790\n f2fs_xattr_generic_set+0x133/0x170 fs/f2fs/xattr.c:86\n __vfs_setxattr+0x115/0x180 fs/xattr.c:182\n __vfs_setxattr_noperm+0x125/0x5f0 fs/xattr.c:216\n __vfs_setxattr_locked+0x1cf/0x260 fs/xattr.c:277\n vfs_setxattr+0x13f/0x330 fs/xattr.c:303\n setxattr+0x146/0x160 fs/xattr.c:611\n path_setxattr+0x1a7/0x1d0 fs/xattr.c:630\n __do_sys_lsetxattr fs/xattr.c:653 [inline]\n __se_sys_lsetxattr fs/xattr.c:649 [inline]\n __x64_sys_lsetxattr+0xbd/0x150 fs/xattr.c:649\n do_syscall_x64 arch/x86/entry/common.c:50 [inline]\n do_syscall_64+0x35/0xb0 arch/x86/entry/common.c:80\n entry_SYSCALL_64_after_hwframe+0x46/0xb0\n\nNAT entry and nat bitmap can be inconsistent, e.g. one nid is free\nin nat bitmap, and blkaddr in its NAT entry is not NULL_ADDR, it\nmay trigger BUG_ON() in f2fs_new_node_page(), fix it.","modified":"2026-08-17T03:36:13.212749179Z","published":"2025-06-18T11:01:17.771Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50013.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/141170b759e03958f296033bb7001be62d1d363b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/29e734ec33ae4bd7de4018fb0fb0eec808c36b92"},{"type":"WEB","url":"https://git.kernel.org/stable/c/43ce0a0bda2c54dad91d5a1943554eed9e050f55"},{"type":"WEB","url":"https://git.kernel.org/stable/c/5a01e45b925a0bc9718eccd33e5920f1a4e44caf"},{"type":"WEB","url":"https://git.kernel.org/stable/c/800ba8979111184d5194f4233cc83afe683efc54"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fbfad62b29e9f8f1c1026a806c9e064ec2a7c342"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/50xxx/CVE-2022-50013.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-50013"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"22ad0b6ab46683975c6da032f1c2593066c7b3bd"},{"fixed":"fbfad62b29e9f8f1c1026a806c9e064ec2a7c342"},{"fixed":"29e734ec33ae4bd7de4018fb0fb0eec808c36b92"},{"fixed":"800ba8979111184d5194f4233cc83afe683efc54"},{"fixed":"5a01e45b925a0bc9718eccd33e5920f1a4e44caf"},{"fixed":"43ce0a0bda2c54dad91d5a1943554eed9e050f55"},{"fixed":"141170b759e03958f296033bb7001be62d1d363b"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50013.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.11.0"},{"fixed":"4.19.256"}]},{"type":"ECOSYSTEM","events":[{"introduced":"4.20.0"},{"fixed":"5.4.211"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.5.0"},{"fixed":"5.10.138"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.63"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"5.19.4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50013.json"}}],"schema_version":"1.9.0"}