cbcvebase.
CVE-2026-23223
published 2026-02-18

CVE-2026-23223: In the Linux kernel, the following vulnerability has been resolved: xfs: fix UAF in xchk_btree_check_block_owner We cannot dereference bs->cur when trying to…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.12%
2.2th percentile
In the Linux kernel, the following vulnerability has been resolved: xfs: fix UAF in xchk_btree_check_block_owner We cannot dereference bs->cur when trying to determine if bs->cur aliases bs->sc->sa.{bno,rmap}_cur after the latter has been freed. Fix this by sampling before type before any freeing could happen. The correct temporal ordering was broken when we removed xfs_btnum_t.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.18.12-1 (forky)linux 6.18.12-1 (forky)
linuxlinux
linuxlinux>= ec793e690f801d97a7ae2a0d429fea1fee4d44aa < 1d411278dda293a507cb794db7d9ed3511c685c61d411278dda293a507cb794db7d9ed3511c685c6
linuxlinux>= ec793e690f801d97a7ae2a0d429fea1fee4d44aa < ed82e7949f5cac3058f4100f3cd670531d41a266ed82e7949f5cac3058f4100f3cd670531d41a266
linuxlinux>= ec793e690f801d97a7ae2a0d429fea1fee4d44aa < ba5264610423d9653aa36920520902d83841bcfdba5264610423d9653aa36920520902d83841bcfd
linuxlinux>= ec793e690f801d97a7ae2a0d429fea1fee4d44aa < 1c253e11225bc5167217897885b85093e17c22171c253e11225bc5167217897885b85093e17c2217
linuxlinux_kernel>= 0 < 6.12.73-16.12.73-1
linuxlinux_kernel>= 0 < 6.18.12-16.18.12-1
linuxlinux_kernel>= 6.13 < 6.18.116.18.11
linuxlinux_kernel>= 6.19 < 6.19.16.19.1
linuxlinux_kernel>= 6.9 < 6.12.726.12.72
msrcazl3_kernel_6.6.121.1-1_on_azure_linux_3.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8LOW
vendor_redhat7.8HIGH
vendor_msrc6.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.