Vulnerabilities > CVE-2023-4394 - Use After Free vulnerability in Linux Kernel

047910
CVSS 6.0 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
linux
CWE-416

Summary

A use-after-free flaw was found in btrfs_get_dev_args_from_path in fs/btrfs/volumes.c in btrfs file-system in the Linux Kernel. This flaw allows a local attacker with special privileges to cause a system crash or leak internal kernel information

Vulnerable Configurations

Part Description Count
OS
Linux
5269

Common Weakness Enumeration (CWE)