CVE-2023-1249: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A use-after-free flaw was found in the Linux kernel’s core dump subsystem. This flaw allows a local user to crash the system. Only if patch 390031c94211 ("coredump: Use the vma snapshot in fill_files_note") not applied yet, then kernel could be affected.

Affected products

  • Linux Linux Kernel: before 5.18 (fixed in 5.18)

Published 2023-03-23. Last modified 2026-06-17.