CVE-2023-1859: Linux Kernel

Medium severity, CVSS 4.7. EPSS: 0.2% chance of exploitation in the next 30 days.

A use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux Kernel. This flaw could allow a local attacker to crash the system due to a race problem, possibly leading to a kernel information leak.

Affected products

  • Linux Linux Kernel: up to and including 6.2; version 6.3 only

Published 2023-05-17. Last modified 2026-06-17.