CVE-2026-23147

CWE-401Memory LeakCWE-9117 documents7 sources
Severity
5.5MEDIUM
EPSS
0.0%
top 96.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 14

Description

In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib: fix the folio leak on S390 hardware acceleration [BUG] After commit aa60fe12b4f4 ("btrfs: zlib: refactor S390x HW acceleration buffer preparation"), we no longer release the folio of the page cache of folio returned by btrfs_compress_filemap_get_folio() for S390 hardware acceleration path. [CAUSE] Before that commit, we call kumap_local() and folio_put() after handling each folio. Although the timing is not idea

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

NVDlinux/linux_kernel6.156.18.9+1
CVEListV5linux/linuxaa60fe12b4f49f49fc73e5023f8675e2df1f7805e80617a5e1c246da2f112a1a072cdd535046adfe+2
Debianlinux< 6.18.9-1

Patches

🔴Vulnerability Details

3
CVEList
btrfs: zlib: fix the folio leak on S390 hardware acceleration2026-02-14
OSV
CVE-2026-23147: In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib: fix the folio leak on S390 hardware acceleration [BUG] After commit a2026-02-14
GHSA
GHSA-h3fw-pc42-9f62: In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib: fix the folio leak on S390 hardware acceleration [BUG] After commit2026-02-14

📋Vendor Advisories

2
Red Hat
kernel: btrfs: zlib: fix the folio leak on S390 hardware acceleration2026-02-14
Debian
CVE-2026-23147: linux - In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib...2026

🕵️Threat Intelligence

1
Wiz
CVE-2026-23147 Impact, Exploitability, and Mitigation Steps | Wiz
CVE-2026-23147 (MEDIUM CVSS 5.5) | In the Linux kernel | cvebase.io