High severity7.8NVD Advisory· Published Oct 16, 2023· Updated May 12, 2026
CVE-2023-45898
CVE-2023-45898
Description
The Linux kernel before 6.5.4 has an es1 use-after-free in fs/ext4/extents_status.c, related to ext4_es_insert_extent.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: <6.5.4
- osv-coords2 versionspkg:deb/ubuntu/linux-azure@6.5.0-1010.10?arch=source&distro=manticpkg:deb/ubuntu/linux-gcp@6.5.0-1010.10?arch=source&distro=mantic
< 6.5.0-1010.10+ 1 more
- (no CPE)range: < 6.5.0-1010.10
- (no CPE)range: < 6.5.0-1010.10
Patches
Vulnerability mechanics
References
7- github.com/torvalds/linux/commit/768d612f79822d30a1e7d132a4d4b05337ce42ecnvdPatch
- lkml.org/lkml/2023/8/13/477nvdMailing ListPatch
- www.spinics.net/lists/stable-commits/msg317086.htmlnvdMailing ListPatchThird Party Advisory
- lore.kernel.org/lkml/aa03f191-445c-0d2e-d6d7-0a3208d7df7a%40huawei.com/T/nvdThird Party Advisory
- cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.5.4nvdRelease Notes
- cert-portal.siemens.com/productcert/html/ssa-265688.htmlnvd
- cert-portal.siemens.com/productcert/html/ssa-398330.htmlnvd
News mentions
0No linked articles in our index yet.