CVE-2023-53861

UnknownEPSS 0.19%

Last modified

CVE-2023-53861 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access memory of grp and will trigger kernel crash if grp is NULL. So do NULL check before corruption check.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access memory of grp and will trigger kernel crash if grp is NULL. So do NULL check before corruption check.

Metrics

EPSS Probability
0.19%

9.0th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 100c0ad6c04597fefeaaba2bb1827cc015d95067, < 245759d987b617d183061db6ab8886ebb5cc78e9; >= 620a3c28221bb219b81bc0bffd065cc187494302, < 3e24082f16825279054a2b8a5e668d65070bbf07; >= b4319e457d6e3fb33e443efeaf4634fc36e8a9ed, < 772ca4bc1d0d21320ef2ecc0f9e4f90ea85a035d; >= 5354b2af34064a4579be8bc0e2f15a7b70f14b5f, < 83a9d5f5ec7e75640b1ba0bbd77a4888df798bb4; >= 5354b2af34064a4579be8bc0e2f15a7b70f14b5f, < e69d665987db0e37896adf78a7e718f9a0a75d3f; >= 5354b2af34064a4579be8bc0e2f15a7b70f14b5f, < a9ce5993a0f5c0887c8a1b4ffa3b8046fbcfdc93; 31668cebf45adfb6283e465e641c4f5a21b07afa; >= 5.10.181, < 5.10.195; >= 5.15.113, < 5.15.132; >= 6.1.30, < 6.1.53; >= 6.3.4, < 6.4
LinuxLinux6.4

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2023-53861?
In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access memory of grp and will trigger kernel crash if grp is NULL. So do NULL check before corruption check.
How severe is CVE-2023-53861?
Severity scoring for CVE-2023-53861 is pending analysis. The EPSS model estimates a 0.19% probability of exploitation in the next 30 days.
How do I fix CVE-2023-53861?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2023

Are you affected by CVE-2023-53861?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST