CVE-2023-3863 Severity: Moderate CVSS v3 Score: 6.4 Description A use-after-free flaw was found in in in NFC in the Linux kernel. This flaw allows a local user with special privileges to impact a kernel information leak issue. Statement The affected code was not introduced into any kernel versions shipped with Red Hat Enterprise Linux, making this vulnerability not applicable to these platforms. Mitigation Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability. Additional Information Bugzilla 2225126: kernel: use-after-free in in CWE-416: Use After Free FAQ: Frequently asked questions about CVE-2023-3863 Affected Packages and Issued Red Hat Security Errata All listed Red Hat Enterprise Linux versions are marked as "Not affected". CVSS Score Details CVSS v3 Base Score: 6.4 (Red Hat) Attack Vector: Local Attack Complexity: High Privileges Required: High Confidentiality Impact: High Integrity Impact: High Availability Impact: High Understanding the Weakness (CWE) CWE-416: Integrity - Technical Impact: Modify Memory, Corrupt valid data, DoS: Crash, Exit, or Restart, Execute Unauthorized Code or Commands