A use-after-free flaw was found in the Linux kernel’s Ext4 File System in how a user triggers several file operations simultaneously with the overlay FS usage. This flaw allows a local user to crash or potentially escalate their privileges on the system. Only if patch 9a2544037600 ("ovl: fix use after free in struct ovlaioreq") not applied yet, the kernel could be affected.
[
{
"events": [
{
"introduced": "5.6"
},
{
"fixed": "5.10.80"
}
]
},
{
"events": [
{
"introduced": "5.11"
},
{
"fixed": "5.14.19"
}
]
},
{
"events": [
{
"introduced": "5.15"
},
{
"fixed": "5.15.3"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1252.json"