LiveActive security incident?Get immediate response
CVE Record

CVE-2022-50762: fs/ntfs3: Avoid UBSAN error on true_sectors_per_clst()

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Avoid UBSAN error on true_sectors_per_clst() syzbot reported UBSAN error as below: [ 76.901829][ T6677] ================================================================================ [ 76.903908][ T6677] UBSAN: shift-out-of-bounds in fs/ntfs3/super.c:675:13 [ 76.905363][ T6677] shift exponent -247 is negative This patch avoid this error.

UnknownCVSS not scoredNot KEV-listedUpdated
Glexia's TakeAutomated analysisunknown

Security readout for executives and security teams

Plain-English summary

This is a Linux kernel ntfs3 filesystem bug reported by syzbot. The public record describes an undefined-behavior shift error, not a confirmed data breach or remote attack. Business urgency is highest for systems that mount NTFS media or disk images, especially from untrusted sources.

Executive priority

Treat as a routine kernel remediation item unless your environment mounts untrusted NTFS content. For workstations, forensic systems, virtualization hosts, or file-processing services handling NTFS images, prioritize patch verification sooner.

Technical view

CVE-2022-50762 affects the Linux kernel ntfs3 code path in fs/ntfs3/super.c, specifically true_sectors_per_clst(). The issue is a UBSAN shift-out-of-bounds condition with a negative shift exponent. Public sources say kernel stable commits resolve it, but provide no CVSS, CWE, or impact classification.

Likely exposure

Linux systems running affected kernel builds with ntfs3 support are the relevant exposure. Risk is most plausible where NTFS filesystems, removable media, or disk images are mounted. Systems that do not use ntfs3 have lower practical exposure, but should still follow vendor kernel guidance.

Exploitation context

The source cites syzbot, indicating fuzzing discovered the condition. There is no KEV listing and no cited evidence of active exploitation. The available record does not describe a weaponized exploit, privilege impact, or remote attack path.

Researcher notes

Public data is limited. The CVE record names affected Linux kernel versions and stable commits, but does not provide CVSS, CWE, exploitability, or concrete security impact. Avoid overstating risk beyond an ntfs3 undefined-behavior condition fixed upstream.

Mitigation direction

  • Apply vendor kernel updates that include the referenced stable fixes.
  • If updates are unavailable, check distribution-specific advisories for backports.
  • Avoid mounting untrusted NTFS media or disk images until remediated.
  • Limit ntfs3 use where it is not operationally required.

Validation and detection

  • Inventory Linux kernel versions and vendor package revisions.
  • Check whether ntfs3 is enabled or used on affected systems.
  • Confirm installed kernels include the referenced stable commits or vendor backports.
  • Review kernel logs for UBSAN ntfs3 shift-out-of-bounds reports.
Prepared
Confidence
medium
Sources
6

Generated from the cited source records. This long-tail analysis has not been individually reviewed by a named human.

Potential ATT&CK relevance

Conservative CVE-to-ATT&CK context

These mappings and lookup hints may be relevant to the vulnerability behavior, CWE, affected product, or exposure path. Glexia-inferred context is not an official MITRE, ATT&CK, CWE, or CVE Program mapping.

ATT&CK lookup starting points

Use these exact CWE pages and searches to review the Glexia ATT&CK library from this CVE's weakness and description context.

cve · low confidence lookup

CVE-2022-50762 mapping review

Open the CVE-to-ATT&CK bridge for reviewed, inferred, or future official mappings tied to this CVE.

Open ATT&CK lookup
Vulnerability profileCVE Program record
Severity
Unknown
CVSS
Not scored
Known Exploited
No
Published
Official CVE source material

CNA and ADP enrichment extracted from CVE v5

These fields come from the CVE record and ADP containers, not from Glexia's Take. They preserve time-varying source decisions such as CISA SSVC, KEV status, CVSS metrics, and provider references.

0CVSS vectors
0Timeline events
0ADP providers
5Source links

CVSS and timeline data

No CVSS vectors or timeline events were available in the normalized CVE source material.

Affected products

Products and packages named in the record

VendorProductVersion / packageStatus
LinuxLinux58cf68a1886d14ffdc5c892ce483a82156769e88, a3b774342fa752a5290c0de36375289dfcf4a260, a3b774342fa752a5290c0de36375289dfcf4a260, a3b774342fa752a5290c0de36375289dfcf4a260, 4746c49b11b2403f5b5b07c6eac9e60663dcd9a3, a2b6986316a2d106f6951e76db70fa4b2fde64a9unaffected
LinuxLinux5.19, 0, 5.15.86, 6.0.16, 6.1.2, 6.2affected
Weakness

CWE details

No CWE listed

CWE links open Glexia weakness intelligence pages with official CWE context, developer remediation guidance, and related CVE mappings.