CVE-2023-4385

Updated: 2023-08-16

CWE: CWE-476: NULL Pointer Dereference

Description:

A NULL pointer dereference flaw was found in dbFree in fs/jfs/jfs_dmap.c in the journaling file system (JFS) in the Linux Kernel. This issue may allow a local attacker to crash the system due to a missing sanity check.

CVSS3: 5.5


Vendor State

OS Vendor version Errata
Ubuntu 16.04 ESM 4.4.0-245.279 USN-6388-1
Ubuntu 22.04 AWS 5.15.0-1019.23 USN-5594-1
Ubuntu 20.04 AWS 5.4.0-1085.92 USN-5622-1
Ubuntu 16.04 HWE ESM 4.15.0-192.203~16.04.1 USN-5591-1
Ubuntu 16.04 AWS ESM 4.4.0-1161.176 USN-6388-1
Ubuntu 16.04 GCP ESM 4.15.0-1135.151~16.04.2 USN-5591-1
Ubuntu 16.04 Azure ESM 4.15.0-1150.165~16.04.1 USN-5591-1
Ubuntu 20.04 5.4.0-126.142 USN-5622-1
Ubuntu 14.04 HWE ESM 4.4.0-245.279~14.04.1 USN-6388-1
Ubuntu 22.04 5.15.0-47.51 USN-5594-1
Ubuntu 22.04 Azure 5.15.0-1019.24 USN-5594-1
Ubuntu 16.04 AWS HWE ESM 4.15.0-1140.151~16.04.1 USN-5591-2

KernelCare State

OS Original kernel version State
Ubuntu 16.04 ESM
Will Not Fix
Ubuntu 22.04 AWS
Will Not Fix
Debian 10
Will Not Fix
Ubuntu 20.04 AWS
Will Not Fix
Ubuntu 16.04 HWE ESM
Will Not Fix
Ubuntu 16.04 AWS ESM
Will Not Fix
Ubuntu 16.04 GCP ESM
Will Not Fix
Ubuntu 16.04 Azure ESM
Will Not Fix
Ubuntu 20.04
Will Not Fix
Ubuntu 14.04 HWE ESM
Will Not Fix
Ubuntu 22.04
Will Not Fix
Ubuntu 22.04 Azure
Will Not Fix
Debian 11
Will Not Fix
Ubuntu 16.04 AWS HWE ESM
Will Not Fix