CVE-2023-52602

HIGH

Linux Kernel < 4.19.307 - Denial of Service via JFS dtSearch Slab Out-of-Bounds Read

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: jfs: fix slab-out-of-bounds Read in dtSearch Currently while searching for current page in the sorted entry table of the page there is a out of bound access. Added a bound check to fix the error. Dave: Set return code to -EIO

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 2.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-400
Status published
Products (20)
debian/debian_linux 10.0
Linux/Linux < 2.6.12
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 1b9d6828589d57f94a23fb1c46112cda39d7efdb
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 1c40ca3d39d769931b28295b3145c25f1decf5a6
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6c6a96c3d74df185ee344977d46944d6f33bb4dd
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 7110650b85dd2f1cee819acd1345a9013a1a62f7
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - bff9d4078a232c01e42e9377d005fb2f4d31a472
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - cab0c265ba182fd266c2aa3c69d7e40640a7f612
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - ce8bc22e948634a5c0a3fa58a179177d0e3f3950
Linux/Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - fa5492ee89463a7590a1449358002ff7ef63529f
... and 10 more
Published Mar 06, 2024
Tracked Since Feb 18, 2026