CVE-2023-53081
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/05/2025
Last modified:
05/05/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
ocfs2: fix data corruption after failed write<br />
<br />
When buffered write fails to copy data into underlying page cache page,<br />
ocfs2_write_end_nolock() just zeroes out and dirties the page. This can<br />
leave dirty page beyond EOF and if page writeback tries to write this page<br />
before write succeeds and expands i_size, page gets into inconsistent<br />
state where page dirty bit is clear but buffer dirty bits stay set<br />
resulting in page data never getting written and so data copied to the<br />
page is lost. Fix the problem by invalidating page beyond EOF after<br />
failed write.
Impact
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/1629f6f522b2d058019710466a84b240683bbee3
- https://git.kernel.org/stable/c/205759c6c18f54659b0b5976b14a52d1b3eb9f57
- https://git.kernel.org/stable/c/47eb055ad3588fc96d34e9e1dd87b210ce62906b
- https://git.kernel.org/stable/c/4c24eb49ab44351424ac8fe8567f91ea48a06089
- https://git.kernel.org/stable/c/90410bcf873cf05f54a32183afff0161f44f9715
- https://git.kernel.org/stable/c/91d7a4bd5656552d6259e2d0f8859f9e8cc5ef68
- https://git.kernel.org/stable/c/a9e53869cb43c96d6d851c491fd4e26430ab6ba6
- https://git.kernel.org/stable/c/c26f3ff4c0be590c1250f945ac2e4fc5fcdc5f45