VDB
ALSA-2022%3A8361
ALSA-2022%3A8361
PUBLISHED
The e2fsprogs packages provide a number of utilities for creating, checking, modifying, and correcting the ext2, ext3, and ext4 file systems. Security Fix(es): * e2fsprogs: out-of-bounds read/write via crafted filesystem (CVE-2022-1304) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| AlmaLinux:9 | e2fsprogs-libs | 0, 0 |
| AlmaLinux:9 | e2fsprogs | 0, 0 |
| AlmaLinux:9 | libcom_err | 0, 0 |
| AlmaLinux:9 | libss | 0, 0 |
| AlmaLinux:9 | libcom_err-devel | 0, 0 |
| AlmaLinux:9 | e2fsprogs-devel | 0, 0 |
Timeline
- Nov 15, 2022 CVE Published
- Nov 18, 2022 CVE Updated
- Mar 6, 2026 Distribution Patch
- Mar 6, 2026 Distribution Patch
- Mar 6, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2022:8361 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2022-1304 third-party-advisory
- https://bugzilla.redhat.com/2069726 third-party-advisory
- https://errata.almalinux.org/9/ALSA-2022-8361.html vendor-advisory