CVE-2023-2898: Race Condition
Last updated 25 April 2025
Other sources
There is a null-pointer-dereference flaw found in f2fswriteendio in fs/f2fs/data.c in the Linux kernel. This flaw allows a local privileged user to cause a denial of service problem.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2023-2898?
CVE-2023-2898 has been assigned a high severity rating due to its potential to cause denial of service.
How do I fix CVE-2023-2898?
To mitigate CVE-2023-2898, update your Linux kernel to a version that includes the patch for this vulnerability.
Which versions of Linux are affected by CVE-2023-2898?
CVE-2023-2898 affects various versions of the Linux kernel including 5.10.223-1, 5.10.226-1, 6.1.119-1, 6.1.123-1, 6.12.11-1, and 6.12.12-1.
Can a local user exploit CVE-2023-2898?
Yes, a local privileged user can exploit CVE-2023-2898 to trigger a denial of service condition.
Is CVE-2023-2898 specific to any Linux distributions?
CVE-2023-2898 is relevant to several distributions, including Debian GNU/Linux 10.0, 11.0, and 12.0.