Impact
The Linux kernel’s OCFS2 heartbeat code mishandles the lifetime of region structures that are used by heartbeat handlers and delayed work, causing a slab‑use‑after‑free scenario. A region can be freed while a timer or handler still references it, resulting in a KASAN slab‑use‑after‑error. An attacker manipulating the creation and teardown of OCFS2 heartbeat regions could trigger this memory corruption, potentially allowing arbitrary code execution or system instability.
Affected Systems
This vulnerability exists in the generic Linux kernel product whenever the OCFS2 file‑system module is compiled in. No specific kernel release numbers are mentioned, so all kernel builds that include the OCFS2 module are potentially affected.
Risk and Exploitability
The CVSS score of 8.1 classifies the flaw as High severity. The EPSS score of less than 1% indicates a very low but non‑zero probability of exploitation in the wild, and the vulnerability is not listed in CISA’s KEV catalog. Exploitation would require local privileged access and the ability to influence OCFS2 cluster membership, which is inferred from the need to create and tear down heartbeat regions. While no publicly known exploit exists, the high impact and potential for arbitrary code execution warrant prompt remediation.
OpenCVE Enrichment