5.5
CVE-2026-23145
- EPSS 0.02%
- Veröffentlicht 14.02.2026 15:36:10
- Zuletzt bearbeitet 17.03.2026 21:13:17
- Quelle 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Unerledigt
ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref
In the Linux kernel, the following vulnerability has been resolved: ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref The error branch for ext4_xattr_inode_update_ref forget to release the refcount for iloc.bh. Find this when review code.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.4.301 < 5.5
Linux ≫ Linux Kernel Version >= 5.10.246 < 5.10.249
Linux ≫ Linux Kernel Version >= 5.15.195 < 5.15.199
Linux ≫ Linux Kernel Version >= 6.1.157 < 6.1.162
Linux ≫ Linux Kernel Version >= 6.6.113 < 6.6.122
Linux ≫ Linux Kernel Version >= 6.12.54 < 6.12.67
Linux ≫ Linux Kernel Version >= 6.17.4 < 6.18.7
Linux ≫ Linux Kernel Version6.19 Updaterc1
Linux ≫ Linux Kernel Version6.19 Updaterc2
Linux ≫ Linux Kernel Version6.19 Updaterc3
Linux ≫ Linux Kernel Version6.19 Updaterc4
Linux ≫ Linux Kernel Version6.19 Updaterc5
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.046 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-401 Missing Release of Memory after Effective Lifetime
The product does not sufficiently track and release allocated memory after it has been used, which slowly consumes remaining memory.