cbcvebase.
CVE-2023-52640
published 2024-04-03

CVE-2023-52640: In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix oob in ntfs_listxattr The length of name cannot exceed the space occupied by…

PriorityP426high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.24%
15.8th percentile
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix oob in ntfs_listxattr The length of name cannot exceed the space occupied by ea.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < a585faf0591548fe0920641950ebfa8a6eefe1cda585faf0591548fe0920641950ebfa8a6eefe1cd
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < 6ed6cdbe88334ca3430c5aee7754dc4597498dfb6ed6cdbe88334ca3430c5aee7754dc4597498dfb
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < 52fff5799e3d1b5803ecd2f5f19c13c65f4f7b2352fff5799e3d1b5803ecd2f5f19c13c65f4f7b23
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < 0830c5cf19bdec50d0ede4755ddc463663deb21c0830c5cf19bdec50d0ede4755ddc463663deb21c
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < 731ab1f9828800df871c5a7ab9ffe965317d3f15731ab1f9828800df871c5a7ab9ffe965317d3f15
linuxlinux_kernel< 5.15.1505.15.150
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122
linuxlinux_kernel>= 5.16 < 6.1.806.1.80
linuxlinux_kernel>= 6.2 < 6.6.196.6.19
linuxlinux_kernel>= 6.7 < 6.7.76.7.7

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
vendor_ubuntu7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.