Bug 2221038 (CVE-2023-37454) - CVE-2023-37454 kernel: udf: use-after-free write in udf_close_lvid
Summary: CVE-2023-37454 kernel: udf: use-after-free write in udf_close_lvid
Keywords:
Status: NEW
Alias: CVE-2023-37454
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Nobody
QA Contact:
URL:
Whiteboard:
Depends On: 2229972 2221044 2221045 2229976 2229977
Blocks: 2221043
TreeView+ depends on / blocked
 
Reported: 2023-07-07 05:56 UTC by Rohit Keshri
Modified: 2023-10-25 13:26 UTC (History)
47 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
A use-after-free flaw was found in the UDF file system in the Linux kernel. This issue could allow a malicious user to crash the system, resulting in a denial of service.
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Rohit Keshri 2023-07-07 05:56:30 UTC
An issue was discovered in the Linux kernel through 6.4.2. A crafted UDF filesystem image causes a use-after-free write operation in the udf_put_super and udf_close_lvid functions in fs/udf/super.c.

https://syzkaller.appspot.com/bug?extid=61564e5023b7229ec85d
https://syzkaller.appspot.com/bug?extid=26873a72980f8fa8bc55
https://lore.kernel.org/all/00000000000056e02f05dfb6e11a@google.com/T/
https://syzkaller.appspot.com/bug?extid=60864ed35b1073540d57

Comment 3 Mauro Matteo Cascella 2023-08-08 10:51:33 UTC
Created kernel tracking bugs for this issue:

Affects: fedora-all [bug 2229972]


Note You need to log in before you can comment on or make changes to this bug.