-

CVE-2023-53683

In the Linux kernel, the following vulnerability has been resolved:

fs: hfsplus: remove WARN_ON() from hfsplus_cat_{read,write}_inode()

syzbot is hitting WARN_ON() in hfsplus_cat_{read,write}_inode(), for
crafted filesystem image can contain bogus length. There conditions are
not kernel bugs that can justify kernel to panic.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 61af77acd039ffd221bf7adf0dc95d0a4d377505
Version f62f5ee63052324ad94dd05091743d9e09f72070
Status affected
Version < c074913b12db3632b11588b31bbfb0fa80a0a1c9
Version ab778439c6fa0071698b62a351f79d319fd72c53
Status affected
Version < a75d9211a07fed513c08c5d4861c4a36ac6a74fe
Version 781fa141414ef18b52f15037497155f80bf0ecab
Status affected
Version < c8daee66585897a4c90d937c91e762100237bff9
Version 1f881d9201f6e0a917004a14329f9ff3d0bfa1e5
Status affected
Version < 37cab61a52d6f42b2d961c51bcf369f09e235fb5
Version 48d9e2e6de01ed35e965eb549758a837c07b601d
Status affected
Version < 48960a503fcec76d3f72347b7e679dda08ca43be
Version 55d1cbbbb29e6656c662ee8f73ba1fc4777532eb
Status affected
Version < 3a9d68d84b2e41ba3f2a727b36f035fad6800492
Version 55d1cbbbb29e6656c662ee8f73ba1fc4777532eb
Status affected
Version < 81b21c0f0138ff5a499eafc3eb0578ad2a99622c
Version 55d1cbbbb29e6656c662ee8f73ba1fc4777532eb
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.16
Status affected
Version < 5.16
Version 0
Status unaffected
Version <= 4.14.*
Version 4.14.316
Status unaffected
Version <= 4.19.*
Version 4.19.284
Status unaffected
Version <= 5.4.*
Version 5.4.244
Status unaffected
Version <= 5.10.*
Version 5.10.181
Status unaffected
Version <= 5.15.*
Version 5.15.113
Status unaffected
Version <= 6.1.*
Version 6.1.30
Status unaffected
Version <= 6.3.*
Version 6.3.4
Status unaffected
Version <= *
Version 6.4
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.105
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String