Impact
A corrupted append‑DIO dinode in the Linux kernel’s OCFS2 filesystem can store an out‑of‑range i_dio_orphaned_slot value during ingestion. When the slot is later used for inode recovery, the kernel dereferences an invalid cache entry pointer, causing a use‑after‑free. The flaw results in memory corruption that could allow an attacker to corrupt kernel memory, potentially escalating privileges or crashing the system. The weakness is a use‑after‑free.
Affected Systems
The vulnerability affects the Linux kernel on any distribution that includes the OCFS2 filesystem. No specific version ranges are listed, so all kernel releases containing OCFS2 are potentially impacted.
Risk and Exploitability
The CVSS score of 7.8 indicates a high severity. The EPSS score is below 1 %, implying a low probability of exploitation at the time of assessment. The flaw is not listed in the CISA KEV catalog. Likely attack vectors require local write access to an OCFS2‑backed filesystem to create the corrupted dinode; therefore, the vulnerability may be exploitable by privileged or compromised local users rather than remote attackers.
OpenCVE Enrichment