PT-2023-8696 · Linux+5 · Linux Kernel+5

·

CVE-2023-52444

·

Published

2023-11-28

·

Updated

2026-08-04

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the f2fs rename() function of the f2fs component. The flaw occurs during cross-directory renames when the system fails to call f2fs set link() to update the .. link to the new directory, particularly when a whiteout is requested. This can lead to dirent corruption, where the inode number for the parent directory is incorrect. Exploitation of this issue may allow an attacker to elevate privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Buffer Overflow

Assertion Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-17576
ALT-PU-2024-3291
ALT-PU-2024-4263
ALT-PU-2024-4623
ALT-PU-2024-4843
BDU:2024-01590
CVE-2023-52444
DLA-3840-1
DLA-3841-1
OESA-2024-2255
OESA-2024-2256
USN-6688-1
USN-6725-1
USN-6725-2
USN-6726-1
USN-6726-2
USN-6726-3
USN-6765-1
USN-6818-1
USN-6818-2
USN-6818-3
USN-6818-4
USN-6819-1
USN-6819-2
USN-6819-3
USN-6819-4
USN-6926-1
USN-6926-2
USN-6926-3
USN-6938-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Os
Ubuntu