CVE-2023-26605
Summary
| CVE | CVE-2023-26605 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-02-26 23:15:00 UTC |
| Updated | 2023-05-12 13:31:00 UTC |
| Description | In the Linux kernel 6.0.8, there is a use-after-free in inode_cgwb_move_to_attached in fs/fs-writeback.c, related to __list_del_entry_valid. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| February 2023 Linux Kernel 6.0.8 Vulnerabilities in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| LKML: Palash Oswal: KASAN: use-after-free Read in inode_cgwb_move_to_attached |
MISC |
lkml.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 182991 Debian Security Update for linux (CVE-2023-26605)
- 199238 Ubuntu Security Notification for Linux kernel (KVM) Vulnerabilities (USN-5950-1)
- 199243 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-5962-1)
- 199297 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-6032-1)
- 357107 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.15-2024-037