cbcvebase.
CVE-2023-53626
published 2025-10-07

CVE-2023-53626: In the Linux kernel, the following vulnerability has been resolved: ext4: fix possible double unlock when moving a directory

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.20%
10.3th percentile
In the Linux kernel, the following vulnerability has been resolved: ext4: fix possible double unlock when moving a directory

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.25-1 (bookworm)linux 6.1.25-1 (bookworm)
linuxlinux>= 0813299c586b175d7edb25f56412c54b812d0379 < 70e42feab2e20618ddd0cbfc4ab4b08628236ecd70e42feab2e20618ddd0cbfc4ab4b08628236ecd
linuxlinux>= 0c440f14558bfacd22c6935ae1fd4b2a09e96b5d < 020166bc6669ca9fb267ebd96bd88c4fb64a5d46020166bc6669ca9fb267ebd96bd88c4fb64a5d46
linuxlinux>= 291cd19d107e197306869cb3237c1bba62d13182 < 43ce288ab5d7274a4a141d7f5e3ed2ab7b41f8a243ce288ab5d7274a4a141d7f5e3ed2ab7b41f8a2
linuxlinux>= 5.10.175 < 5.10.1765.10.176
linuxlinux>= 5.15.103 < 5.15.1045.15.104
linuxlinux>= 5.4.237 < 5.4.2385.4.238
linuxlinux>= 6.1.20 < 6.1.216.1.21
linuxlinux>= 6.2.7 < 6.2.86.2.8
linuxlinux>= 8dac5a63cf79707b547ea3d425fead5f4482198f < c16cbd8233d6c58fc488545393e49b5d55729990c16cbd8233d6c58fc488545393e49b5d55729990
linuxlinux>= b0bb13612292ca90fa4c2a7e425375649bc50d3e < e71eb4dca41f0f36823724ced0406bb2dbdd5506e71eb4dca41f0f36823724ced0406bb2dbdd5506
linuxlinux>= c50fc503ee1b97f12c98e26afc39fdaebebcf04f < 1c93c42c7bb23057bde8a0a2ab834927ff64d20c1c93c42c7bb23057bde8a0a2ab834927ff64d20c
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.