CVE-2023-52600
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2023-52600 is a use-after-free vulnerability discovered in the Linux kernel's JFS (Journaling File System) component, specifically in the jfs_evict_inode function. The vulnerability was disclosed on March 6, 2024, affecting multiple versions of the Linux kernel from versions prior to 4.19.307 up to 6.7.4 (NVD).

Technical details

The vulnerability occurs when the execution of diMount(ipimap) fails, where the object ipimap that has been released may be accessed in diFreeSpecial(). The issue arises due to asynchronous ipimap release occurring when rcu_core() calls jfs_free_node(). The CVSS v3.1 base score for this vulnerability is 7.8 (High), with the vector string CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H (NVD).

Impact

The vulnerability can lead to a system crash and potential privilege escalation due to the use-after-free condition in the kernel's JFS implementation. This could allow an attacker with local access to execute arbitrary code or cause denial of service (Red Hat).

Exploitability

The vulnerability requires local access with low privileges to exploit. It has been confirmed as exploitable through proof-of-concept code, as reported by the syzkaller project (Kernel Patch).

Mitigation and workarounds

The vulnerability has been fixed in multiple Linux kernel versions through a patch that modifies the initialization timing of sbi->ipimap. The fix ensures that when diMount(ipimap) fails, sbi->ipimap is not initialized as ipimap until after the successful completion of diMount(). Updates are available for affected distributions including Ubuntu, Debian, and other Linux distributions (Debian LTS).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-80904MEDIUM5.9
  • Linux Kernel logoLinux Kernel
  • linux-hwe-7.0
NoYesSep 04, 2026
CVE-2026-80905MEDIUM5.5
  • Linux Kernel logoLinux Kernel
  • linux-nvidia-7.0
NoYesSep 04, 2026
CVE-2026-80913MEDIUM4.4
  • Linux Kernel logoLinux Kernel
  • linux-intel-iotg-5.15
NoYesSep 04, 2026
CVE-2026-80912MEDIUM4.4
  • Linux Kernel logoLinux Kernel
  • linux-gcp-fips
NoYesSep 04, 2026
CVE-2026-80906NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-azure-7.0
NoYesSep 04, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management