Description
In the Linux kernel, the following vulnerability has been resolved:
ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref
The error branch for ext4_xattr_inode_update_ref forget to release the
refcount for iloc.bh. Find this when review code.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: High
Affected Packages3 packages
▶CVEListV5linux/linux1cfb3e4ddbdc8e02e637b8852540bd4718bf4814 — 7c9f059c3d531a12d7ad96cd34a44b8af7c00d5f+9 ▶Debianlinux< 5.10.249-1+3 🔴Vulnerability Details
3GHSAGHSA-4vx7-fj8p-qpj9: In the Linux kernel, the following vulnerability has been resolved:
ext4: fix iloc↗2026-02-14 ▶ CVEListext4: fix iloc.bh leak in ext4_xattr_inode_update_ref↗2026-02-14 ▶ OSVCVE-2026-23145: In the Linux kernel, the following vulnerability has been resolved: ext4: fix iloc↗2026-02-14 ▶ 📋Vendor Advisories
3UbuntuLinux kernel (NVIDIA Tegra) vulnerabilities↗2026-04-09 ▶ Red Hatkernel: ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref↗2026-02-14 ▶ DebianCVE-2026-23145: linux - In the Linux kernel, the following vulnerability has been resolved: ext4: fix i...↗2026 ▶ 🕵️Threat Intelligence
1WizCVE-2026-23145 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶