CVE-2023-53473
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/10/2025
Last modified:
20/01/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
ext4: improve error handling from ext4_dirhash()<br />
<br />
The ext4_dirhash() will *almost* never fail, especially when the hash<br />
tree feature was first introduced. However, with the addition of<br />
support of encrypted, casefolded file names, that function can most<br />
certainly fail today.<br />
<br />
So make sure the callers of ext4_dirhash() properly check for<br />
failures, and reflect the errors back up to their callers.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.2 (including) | 5.15.112 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.16 (including) | 6.1.29 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (including) | 6.2.16 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.3 (including) | 6.3.3 (excluding) |
| cpe:2.3:o:linux:linux_kernel:6.4:rc1:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/4b3cb1d108bfc2aebb0d7c8a52261a53cf7f5786
- https://git.kernel.org/stable/c/70d579aefa652a06af97e013e3fbbabbe5a43553
- https://git.kernel.org/stable/c/b2531936118deb3f479c4fa1bcd787b74b8faa6a
- https://git.kernel.org/stable/c/c1fae027da61fe8e7eb99f7244297e81bc0f1e43
- https://git.kernel.org/stable/c/f68876aeef96ef8b708ab10b9cb47ce0a5adb424



