CVE Database
/

CVE-2023-1583

Back to search

CVE-2023-1583

Published: Mar 24, 2023

Modified: Feb 20, 2025

PUBLISHED

Description

A NULL pointer dereference was found in io_file_bitmap_get in io_uring/filetable.c in the io_uring sub-component in the Linux Kernel. When fixed files are unregistered, some context information (file_alloc_{start,end} and alloc_hint) is not cleared. A subsequent request that has auto index selection enabled via IORING_FILE_INDEX_ALLOC can cause a NULL pointer dereference. An unprivileged user can use the flaw to cause a system crash.

VendorProductVersions

n/a

Linux kernel

affected
affected kernel 5.19, 6.0, 6.1, 6.2, 6.3

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now