CVE-2023-53306Missing Reference to Active Allocated Resource in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 94.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 16

Description

In the Linux kernel, the following vulnerability has been resolved: fsdax: force clear dirty mark if CoW XFS allows CoW on non-shared extents to combat fragmentation[1]. The old non-shared extent could be mwrited before, its dax entry is marked dirty. This results in a WARNing: [ 28.512349] ------------[ cut here ]------------ [ 28.512622] WARNING: CPU: 2 PID: 5255 at fs/dax.c:390 dax_insert_entry+0x342/0x390 [ 28.513050] Modules linked in: rpcsec_gss_krb5 auth_rpcgss nfsv4 nfs lockd grace f

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel6.26.2.11+1
Debianlinux/linux_kernel< 6.3.7-1+1
CVEListV5linux/linuxf80e1668888f34c0764822e74953c997daf2ccdbfac05f800abb63dc4d7cc48fe7edf16e0520dc1f+2
debiandebian/linux< linux 6.3.7-1 (forky)

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9247-9gc6-2w2p: In the Linux kernel, the following vulnerability has been resolved: fsdax: force clear dirty mark if CoW XFS allows CoW on non-shared extents to com2025-09-16
OSV
CVE-2023-53306: In the Linux kernel, the following vulnerability has been resolved: fsdax: force clear dirty mark if CoW XFS allows CoW on non-shared extents to comba2025-09-16

📋Vendor Advisories

2
Red Hat
kernel: fsdax: force clear dirty mark if CoW2025-09-16
Debian
CVE-2023-53306: linux - In the Linux kernel, the following vulnerability has been resolved: fsdax: forc...2023
CVE-2023-53306 — Linux vulnerability | cvebase