Lucene search

K
cveRedhatCVE-2023-1611
HistoryApr 03, 2023 - 10:15 p.m.

CVE-2023-1611

2023-04-0322:15:06
CWE-416
redhat
web.nvd.nist.gov
92
cve-2023-1611
btrfs
use-after-free
linux kernel
security vulnerability
nvd

CVSS3

6.3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H

AI Score

6.4

Confidence

High

EPSS

0

Percentile

14.4%

A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attacker to crash the system and possibly cause a kernel information lea

Affected configurations

Nvd
Node
fedoraprojectfedoraMatch36
OR
fedoraprojectfedoraMatch37
Node
linuxlinux_kernelRange2.6.135.10.177
OR
linuxlinux_kernelRange5.155.15.106
OR
linuxlinux_kernelRange6.16.1.23
OR
linuxlinux_kernelRange6.26.2.10
OR
linuxlinux_kernelMatch2.6.12rc2
OR
linuxlinux_kernelMatch2.6.12rc3
OR
linuxlinux_kernelMatch2.6.12rc4
OR
linuxlinux_kernelMatch2.6.12rc5
OR
linuxlinux_kernelMatch2.6.12rc6
OR
linuxlinux_kernelMatch6.3-
OR
linuxlinux_kernelMatch6.3rc1
OR
linuxlinux_kernelMatch6.3rc2
OR
linuxlinux_kernelMatch6.3rc3
OR
linuxlinux_kernelMatch6.3rc4
OR
linuxlinux_kernelMatch6.3rc5
VendorProductVersionCPE
fedoraprojectfedora36cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
fedoraprojectfedora37cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
linuxlinux_kernel2.6.12cpe:2.3:o:linux:linux_kernel:2.6.12:rc2:*:*:*:*:*:*
linuxlinux_kernel2.6.12cpe:2.3:o:linux:linux_kernel:2.6.12:rc3:*:*:*:*:*:*
linuxlinux_kernel2.6.12cpe:2.3:o:linux:linux_kernel:2.6.12:rc4:*:*:*:*:*:*
linuxlinux_kernel2.6.12cpe:2.3:o:linux:linux_kernel:2.6.12:rc5:*:*:*:*:*:*
linuxlinux_kernel2.6.12cpe:2.3:o:linux:linux_kernel:2.6.12:rc6:*:*:*:*:*:*
linuxlinux_kernel6.3cpe:2.3:o:linux:linux_kernel:6.3:-:*:*:*:*:*:*
linuxlinux_kernel6.3cpe:2.3:o:linux:linux_kernel:6.3:rc1:*:*:*:*:*:*
Rows per page:
1-10 of 141

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Kernel",
    "versions": [
      {
        "version": "unknown",
        "status": "affected"
      }
    ]
  }
]

CVSS3

6.3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H

AI Score

6.4

Confidence

High

EPSS

0

Percentile

14.4%