---
cve: "CVE-2026-23145"
severity: "LOW"
cvss: 3.1
epss: "12%"
vendor: "Linux"
kev: false
exploited: false
published: "2026-02-14 15:36:10"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-11T12:05:19+02:00"
---

# CVE-2026-23145

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref

The error branch for ext4_xattr_inode_update_ref forget to release the
refcount for iloc.bh. Find this when review code.

## Patch verfügbar (OSV)

- Kernel ≥ 5.10.249
- Kernel ≥ 5.15.199
- Kernel ≥ 6.1.162
- Kernel ≥ 6.6.122
- Kernel ≥ 6.12.67
- Kernel ≥ 6.18.7

## Referenzen

- <https://git.kernel.org/stable/c/7c9f059c3d531a12d7ad96cd34a44b8af7c00d5f>
- <https://git.kernel.org/stable/c/6241cd1d0acc2363016ac55b8773ba1332dd59d7>
- <https://git.kernel.org/stable/c/3b00c16e42428a1ecd3a5eb9cc37f8ad9bd47626>
- <https://git.kernel.org/stable/c/0b06cde92f2f960f4ebe3c988c69f2711f2a24dc>
- <https://git.kernel.org/stable/c/8e8542c539927ae3898a4d02941f84e252e2dea1>
- <https://git.kernel.org/stable/c/06e26287f2e349a28ad363941ffd9076bfed8b2e>
- <https://git.kernel.org/stable/c/d250bdf531d9cd4096fedbb9f172bb2ca660c868>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-23145) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
