Use-after-free in Linux kernel - CVE-2023-4394
Published: November 3, 2023
Linux kernel
Linux Foundation
Description
The vulnerability allows a local privileged user to gain access to sensitive information or perform a denial of service attack.
The vulnerability exists due to a use-after-free error within the btrfs_get_dev_args_from_path in fs/btrfs/volumes.c in btrfs file-system. A local privileged user can trigger a use-after-free error and gain access to sensitive information or perform a denial of service attack.