PT-2025-38446 · Linux+2 · Linux Kernel+2
Published
2022-11-18
·
Updated
2025-11-14
·
CVE-2023-53427
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.1.0-rc5+ #82
Description
A use-after-free (UAF) issue exists in the CIFS implementation of the Linux kernel. Specifically, the issue occurs when destroying the Message Response (MR) list. If MR allocation fails, the MR recovery work is not initialized and the list is not cleared, leading to a warning and a UAF condition upon release of the MR.
Recommendations
Update the Linux kernel to a version newer than 6.1.0-rc5+ #82 to resolve this issue.
Exploit
Fix
Improper Resource Release
Use After Free
Improper Initialization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse