CVE-2023-53243Linux vulnerability

5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 95.84%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 15

Description

In the Linux kernel, the following vulnerability has been resolved: btrfs: add handling for RAID1C23/DUP to btrfs_reduce_alloc_profile Callers of `btrfs_reduce_alloc_profile` expect it to return exactly one allocation profile flag, and failing to do so may ultimately result in a WARN_ON and remount-ro when allocating new blocks, like the below transaction abort on 6.1. `btrfs_reduce_alloc_profile` has two ways of determining the profile, first it checks if a conversion balance is currently ru

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

debiandebian/linux< linux 6.1.52-1 (bookworm)
NVDlinux/linux_kernel5.55.10.188+3
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linux47e6f7423b9196ad6832d26cae52b7015f81ee7fa3fbd156bd2cd16e3c64e250ebce33eb9f2ef612+5

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53243: In the Linux kernel, the following vulnerability has been resolved: btrfs: add handling for RAID1C23/DUP to btrfs_reduce_alloc_profile Callers of `btr2025-09-15
GHSA
GHSA-hcgh-mwq2-gxfm: In the Linux kernel, the following vulnerability has been resolved: btrfs: add handling for RAID1C23/DUP to btrfs_reduce_alloc_profile Callers of `b2025-09-15

📋Vendor Advisories

2
Red Hat
kernel: btrfs: add handling for RAID1C23/DUP to btrfs_reduce_alloc_profile2025-09-15
Debian
CVE-2023-53243: linux - In the Linux kernel, the following vulnerability has been resolved: btrfs: add ...2023
CVE-2023-53243 — Linux vulnerability | cvebase