CVE-2023-53337Linux vulnerability

5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.89%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 17

Description

In the Linux kernel, the following vulnerability has been resolved: nilfs2: do not write dirty data after degenerating to read-only According to syzbot's report, mark_buffer_dirty() called from nilfs_segctor_do_construct() outputs a warning with some patterns after nilfs2 detects metadata corruption and degrades to read-only mode. After such read-only degeneration, page cache data may be cleared through nilfs_clear_dirty_page() which may also clear the uptodate flag for their buffer heads. Ho

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel4.154.19.283+7
Debianlinux/linux_kernel< 5.10.191-1+3
CVEListV5linux/linux8c26c4e2694a163d525976e804d81cd955bbb40cbd89073fc7a5d03b1d06b372addbe405e5a925f4+9
debiandebian/linux< linux 6.1.37-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53337: In the Linux kernel, the following vulnerability has been resolved: nilfs2: do not write dirty data after degenerating to read-only According to syzbo2025-09-17
GHSA
GHSA-jvhc-rq6w-32mx: In the Linux kernel, the following vulnerability has been resolved: nilfs2: do not write dirty data after degenerating to read-only According to syz2025-09-17

📋Vendor Advisories

2
Red Hat
kernel: nilfs2: do not write dirty data after degenerating to read-only2025-09-17
Debian
CVE-2023-53337: linux - In the Linux kernel, the following vulnerability has been resolved: nilfs2: do ...2023
CVE-2023-53337 — Linux vulnerability | cvebase