CVE-2023-2898

Aliases:UBUNTU-CVE-2023-2898DEBIAN-CVE-2023-2898CGA-23h7-f326-2fm9CGA-24g3-4fr5-fhvqCGA-25vq-6j2c-x5grCGA-25w7-f997-rcmmCGA-25wc-9vf7-qgwcCGA-26vm-24pj-2m29CGA-275j-gh69-49j4CGA-2cfv-p33c-rf3mCGA-2fc5-3ghj-wc8jCGA-2m22-q875-m765CGA-2mgc-ww3j-gq86CGA-2pmg-6265-vj95CGA-34hh-425c-rcj8CGA-35j5-9h72-q4r7CGA-3c9j-rm5r-5f7fCGA-3p7h-cx23-rcxqCGA-3rww-vgh4-m9x8CGA-3v4g-wvm7-25m3CGA-42px-4h75-xj88CGA-49f3-27qr-x2rwCGA-4m7g-7cq8-255vCGA-4qhw-9f88-jq9qCGA-4r2g-85mq-q3gpCGA-56hp-mcjf-pr4cCGA-58r6-hf2m-rm2vCGA-59f7-9r46-chq8CGA-5fvw-8p56-qrgxCGA-5w4j-g2fm-m8gvCGA-644c-hg46-r7xqCGA-6gjr-8j6g-c3h8CGA-6hhq-vcr2-j97xCGA-6xm7-v9qc-5993CGA-727x-mwc4-r2mjCGA-7286-2jh9-9rf9CGA-7749-2xw7-hf3xCGA-782f-6x9h-8m9jCGA-797r-7jw5-5qp2CGA-798x-xw9r-8rxfCGA-7gvf-7vg6-qj7rCGA-7mm6-qjpv-5q6pCGA-7v5m-g2cj-6qgfCGA-8fx5-q4f2-276vCGA-8w7v-pgjq-8m6wCGA-99j9-mjjc-v679CGA-9g53-3jjp-79pjCGA-9g6c-cwwp-7hjfCGA-9p52-9x24-7p5rCGA-9r6g-8753-6j97CGA-c52w-3qqw-wwvpCGA-c5gv-hfqm-pcwqCGA-c652-j6q5-3xqmCGA-cfjx-4476-h7mwCGA-cg52-2xmc-hw57CGA-chjh-v373-m9mpCGA-f3hr-7rwj-cc36CGA-f3x3-r6cw-g34qCGA-f7hh-c5c2-85x4CGA-g337-ch6m-vwx3CGA-g38x-4hc4-h6h9CGA-g67h-xvrx-w8p3CGA-gj3q-x5hj-rh99CGA-gq2q-cx23-2478CGA-h4pf-2gcj-cx66CGA-h67h-677j-692xCGA-h6m8-82jh-8rfcCGA-h7cf-58hx-qq26CGA-j24h-89v3-mv76CGA-j27c-469c-54wwCGA-j48m-x8wc-69x8CGA-j9p7-286m-3468CGA-jhc8-q4m9-h5grCGA-jj6p-5qvx-c4wvCGA-jr82-xjw2-m234CGA-m5c4-rf29-26fqCGA-m626-cjq5-x635CGA-m986-5jgh-vxmgCGA-mcg6-f57x-7q98CGA-mq5w-cfrg-4232CGA-mrh3-xmqq-c3chCGA-mv67-gp3h-m3j9CGA-p5jg-v7cx-9r8pCGA-p9h9-xhcm-w9qrCGA-pvcf-34j9-m36qCGA-q2w5-7644-xqrcCGA-q5mw-83hw-3w73CGA-q5pw-2q7j-9923CGA-q663-cmvp-8q9mCGA-q9cc-r3q7-h35jCGA-q9j3-mqc6-cp8gCGA-qcx7-w959-x429CGA-qg72-q5pp-3hwmCGA-qmjg-vcg8-9c8qCGA-qr72-489v-r6xcCGA-qw68-wfrp-j769CGA-qwwv-6mjf-xrgrCGA-r634-xhhr-fj4gCGA-rv3c-whg4-9m2vCGA-rwj6-fhhm-6wvmCGA-v26f-8pfc-9xmgCGA-v8j9-vcq5-fx47CGA-vcgg-25w8-jcxxCGA-vf85-3mg8-rx3mCGA-vh54-rq69-w9wpCGA-vp2j-qvr4-7p3cCGA-vr4j-6pq8-3qvwCGA-w3hm-f9pg-cw36CGA-wr3v-6cf6-q273CGA-ww2j-g3h2-7c46CGA-x24x-h54q-6mq7CGA-x8qr-3ghg-2mf5CGA-xm3j-h378-3265CGA-xp67-4c7g-9c2cCGA-xqrq-vm3c-97jpCGA-xrvf-2p88-55rwCGA-p5h9-pf48-m25jCGA-wr9h-p3wc-jrgwCGA-4hvr-mqgh-fqh8CGA-6q23-gh7p-47pcCGA-7c7p-gq3h-53vvCGA-874h-x3cg-mgwpCGA-9fgj-hfm7-p7prCGA-g473-fqh4-5jp5CGA-gwf8-g67c-qfccCGA-h43g-hqhh-rqq5CGA-qxv7-w2hx-j83mCGA-r7pc-62mx-8mr5CGA-w3p6-mvm2-7gjpCGA-w4wp-mxg8-px5vCGA-wqf5-qjcx-c988CGA-x35m-x8x7-vpgfCGA-xxqm-5phw-cxvfCGA-4c7f-f9j8-m773CGA-cvpm-c2r3-6jxxCGA-pwj5-fch8-5hjwCGA-rc6q-jh8w-gcq5CGA-prpp-m7wf-gv3pCGA-f8xj-p92g-8x8cCGA-g3h5-8f75-w26wCGA-v6w3-x4jp-j5f2
Advisory lineage Upstream: 0 Downstream: 15
Modified
Published: 26 May 2023, 00:00
Last modified:15 Oct 2024, 17:12

Vulnerability Summary

Overall Risk (default)
low
19/100
CVSS Score
4.7 MEDIUM
v3.1 (nvd)
EPSS Score
0.19% LOW
0% probability +0.17%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

26 May 2023, 00:00
Published
Vulnerability first disclosed
15 Oct 2024, 17:12
Last Modified
Vulnerability information updated

Description

There is a null-pointer-dereference flaw found in f2fs_write_end_io in fs/f2fs/data.c in the Linux kernel. This flaw allows a local privileged user to cause a denial of service problem.

CVSS Metrics

  • v3.1MEDIUMScore: 4.7CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.19% Percentile: 9%

Techniques & Countermeasures

  • CWE-476NULL Pointer Dereference

    The product dereferences a pointer that it expects to be valid but is NULL.

  • CWE-362Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

    The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

Affected Systems

  • chainguardhyperv-daemons-6.18

    < 0

  • chainguardhyperv-daemons-generic

    < 0

  • chainguardlinux-aws-6.12

    < 6.12.65-r0 | < 0

  • chainguardlinux-aws-6.12-boot-installed

    < 0

  • chainguardlinux-aws-6.12-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.12-headers

    < 0

  • chainguardlinux-aws-6.12-modules

    < 0

  • chainguardlinux-aws-6.18

    < 6.18.10-r0 | < 0

  • chainguardlinux-aws-6.18-boot-installed

    < 0

  • chainguardlinux-aws-6.18-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.18-headers

    < 0

  • chainguardlinux-aws-6.18-modules

    < 0

  • chainguardlinux-aws-generic

    < 0 | < 6.18.5-r0

  • chainguardlinux-aws-generic-boot-installed

    < 0

  • chainguardlinux-aws-generic-fips-boot-installed

    < 0

  • chainguardlinux-aws-generic-headers

    < 0

  • chainguardlinux-aws-generic-modules

    < 0

  • chainguardlinux-azure-6.12

    < 6.12.65-r1 | < 0

  • chainguardlinux-azure-6.18

    < 0

  • chainguardlinux-azure-6.18-boot-installed

    < 0

  • chainguardlinux-azure-6.18-fips-boot-installed

    < 0

  • chainguardlinux-azure-6.18-headers

    < 0

  • chainguardlinux-azure-6.18-modules

    < 0

  • chainguardlinux-azure-generic

    < 6.18.5-r0 | < 0

  • chainguardlinux-azure-generic-boot-installed

    < 0

  • chainguardlinux-azure-generic-fips-boot-installed

    < 0

  • chainguardlinux-azure-generic-headers

    < 0

  • chainguardlinux-azure-generic-modules

    < 0

  • chainguardlinux-desktop-6.18

    all

  • chainguardlinux-desktop-6.18-bootc

    all

  • chainguardlinux-desktop-6.18-bootc-boot-installed

    all

  • chainguardlinux-desktop-6.18-headers

    all

  • chainguardlinux-desktop-6.18-modules

    all

  • chainguardlinux-desktop-7.2

    all

  • chainguardlinux-desktop-7.2-bootc

    all

  • chainguardlinux-desktop-7.2-headers

    all

  • chainguardlinux-desktop-7.2-modules

    all

  • chainguardlinux-firecracker-6.18

    all

  • chainguardlinux-gcp-6.12

    < 0 | < 6.12.65-r0

  • chainguardlinux-gcp-6.18

    < 0 | < 6.18.10-r0

  • chainguardlinux-gcp-6.18-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-fips-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-headers

    < 0

  • chainguardlinux-gcp-6.18-modules

    < 0

  • chainguardlinux-gcp-generic

    < 6.18.5-r0 | < 0

  • chainguardlinux-gcp-generic-boot-installed

    < 0

  • chainguardlinux-gcp-generic-fips-boot-installed

    < 0

  • chainguardlinux-gcp-generic-headers

    < 0

  • chainguardlinux-gcp-generic-modules

    < 0

  • chainguardlinux-qemu-6.12

    < 6.12.71-r0

Showing first 50 affected entries in server-rendered view.

References (21)