CVE-2025-22076: exfat: fix missing shutdown check

Description

In the Linux kernel, the following vulnerability has been resolved:

exfat: fix missing shutdown check

xfstests generic/730 test failed because after deleting the device
that still had dirty data, the file could still be read without
returning an error. The reason is the missing shutdown check in
->read_iter.

I also noticed that shutdown checks were missing from ->write_iter,
->splice_read, and ->mmap. This commit adds shutdown checks to all
of them.

Classification

CVE ID: CVE-2025-22076

Affected Products

Vendor: Linux

Product: Linux, Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.02% (probability of being exploited)

EPSS Percentile: 2.91% (scored less or equal to compared to others)

EPSS Date: 2025-04-20 (when was this score calculated)

References

https://nvd.nist.gov/vuln/detail/CVE-2025-22076
https://git.kernel.org/stable/c/4a9595eb024b8319957c178be3cdeed613ac0795
https://git.kernel.org/stable/c/e41e33eb795cb9c1ead6ac627d8710546fac6e81
https://git.kernel.org/stable/c/539147585ca453db6e3d7a5cf3b9c9690513762d
https://git.kernel.org/stable/c/47e35366bc6fa3cf189a8305bce63992495f3efa

Timeline