CVE-2023-53117
published 2025-05-02CVE-2023-53117: In the Linux kernel, the following vulnerability has been resolved: fs: prevent out-of-bounds array speculation when closing a file descriptor Google-Bug-Id…
PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.20%
9.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
fs: prevent out-of-bounds array speculation when closing a file descriptor
Google-Bug-Id: 114199369
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.20-1 (bookworm) | linux 6.1.20-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f31cd5da636682caea424fa1c22679016cbfc16b | f31cd5da636682caea424fa1c22679016cbfc16b |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3d5d9501b634fd268eb56428cda92cd317752d69 | 3d5d9501b634fd268eb56428cda92cd317752d69 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6631c8da02cfad96c53b217cf647b511c7f34faf | 6631c8da02cfad96c53b217cf647b511c7f34faf |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < a759905de9cd6ec9ca08ceadf0920272772ed830 | a759905de9cd6ec9ca08ceadf0920272772ed830 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f8cd8754a03a3748384ee438c572423643c9c315 | f8cd8754a03a3748384ee438c572423643c9c315 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < cec08b7d1ebcd3138d4658b3868ce26aeb1e8e06 | cec08b7d1ebcd3138d4658b3868ce26aeb1e8e06 |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < eea8e4e056a5ffbeb539a13854c017d5d62c756a | eea8e4e056a5ffbeb539a13854c017d5d62c756a |
| linux | linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 609d54441493c99f21c1823dfd66fa7f4c512ff4 | 609d54441493c99f21c1823dfd66fa7f4c512ff4 |
| linux | linux_kernel | < 4.14.310 | 4.14.310 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 0 < 6.1.20-1 | 6.1.20-1 |
| linux | linux_kernel | >= 4.15 < 4.19.278 | 4.19.278 |
| linux | linux_kernel | >= 4.20 < 5.4.237 | 5.4.237 |
| linux | linux_kernel | >= 5.11 < 5.15.103 | 5.15.103 |
| linux | linux_kernel | >= 5.16 < 6.1.20 | 6.1.20 |
| linux | linux_kernel | >= 5.5 < 5.10.175 | 5.10.175 |
| linux | linux_kernel | >= 6.2 < 6.2.7 | 6.2.7 |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-45q6-6mh9-vrvp: In the Linux kernel, the following vulnerability has been resolved:
fs: prevent out-of-bounds array speculation when closing a file descriptor
Googl
ghsa_unreviewed·2025-05-02
CVE-2023-53117 [HIGH] CWE-125 GHSA-45q6-6mh9-vrvp: In the Linux kernel, the following vulnerability has been resolved:
fs: prevent out-of-bounds array speculation when closing a file descriptor
Googl
In the Linux kernel, the following vulnerability has been resolved:
fs: prevent out-of-bounds array speculation when closing a file descriptor
Google-Bug-Id: 114199369
OSV
CVE-2023-53117: In the Linux kernel, the following vulnerability has been resolved: fs: prevent out-of-bounds array speculation when closing a file descriptor Google-
osv·2025-05-02·CVSS 7.1
CVE-2023-53117 [HIGH] CVE-2023-53117: In the Linux kernel, the following vulnerability has been resolved: fs: prevent out-of-bounds array speculation when closing a file descriptor Google-
In the Linux kernel, the following vulnerability has been resolved: fs: prevent out-of-bounds array speculation when closing a file descriptor Google-Bug-Id: 114199369
Red Hat
kernel: fs: prevent out-of-bounds array speculation when closing a file descriptor
vendor_redhat·2025-05-02·CVSS 7.1
CVE-2023-53117 [HIGH] CWE-385 kernel: fs: prevent out-of-bounds array speculation when closing a file descriptor
kernel: fs: prevent out-of-bounds array speculation when closing a file descriptor
In the Linux kernel, the following vulnerability has been resolved:
fs: prevent out-of-bounds array speculation when closing a file descriptor
Google-Bug-Id: 114199369
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 8) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 9) - Fix deferred
Debian
CVE-2023-53117: linux - In the Linux kernel, the following vulnerability has been resolved: fs: prevent...
vendor_debian·2023·CVSS 7.1
CVE-2023-53117 [HIGH] CVE-2023-53117: linux - In the Linux kernel, the following vulnerability has been resolved: fs: prevent...
In the Linux kernel, the following vulnerability has been resolved: fs: prevent out-of-bounds array speculation when closing a file descriptor Google-Bug-Id: 114199369
Scope: local
bookworm: resolved (fixed in 6.1.20-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.20-1)
sid: resolved (fixed in 6.1.20-1)
trixie: resolved (fixed in 6.1.20-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/3d5d9501b634fd268eb56428cda92cd317752d69https://git.kernel.org/stable/c/609d54441493c99f21c1823dfd66fa7f4c512ff4https://git.kernel.org/stable/c/6631c8da02cfad96c53b217cf647b511c7f34fafhttps://git.kernel.org/stable/c/a759905de9cd6ec9ca08ceadf0920272772ed830https://git.kernel.org/stable/c/cec08b7d1ebcd3138d4658b3868ce26aeb1e8e06https://git.kernel.org/stable/c/eea8e4e056a5ffbeb539a13854c017d5d62c756ahttps://git.kernel.org/stable/c/f31cd5da636682caea424fa1c22679016cbfc16bhttps://git.kernel.org/stable/c/f8cd8754a03a3748384ee438c572423643c9c315
2025-05-02
Published