cbcvebase.
CVE-2023-53732
published 2025-10-22

CVE-2023-53732: In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix NULL dereference in ni_write_inode Syzbot reports a NULL dereference in…

PriorityP419
EPSS
0.19%
8.4th percentile
In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix NULL dereference in ni_write_inode Syzbot reports a NULL dereference in ni_write_inode. When creating a new inode, if allocation fails in mi_init function (called in mi_format_new function), mi->mrec is set to NULL. In the error path of this inode creation, mi->mrec is later dereferenced in ni_write_inode. Add a NULL check to prevent NULL dereference.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < d4b74482529516477cf7b12502538e51827c699fd4b74482529516477cf7b12502538e51827c699f
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < b3152afc0eb864f7c6ecad134a15b577ef7aec77b3152afc0eb864f7c6ecad134a15b577ef7aec77
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < b1135fbaf8ebef93df326761ac70ebcc3c2e3d63b1135fbaf8ebef93df326761ac70ebcc3c2e3d63
linuxlinux>= 4534a70b7056fd4b9a1c6db5a4ce3c98546b291e < 8dae4f6341e335a09575be60b4fdf697c732a4708dae4f6341e335a09575be60b4fdf697c732a470
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 5.15.0 < 5.15.1135.15.113
linuxlinux_kernel>= 5.16.0 < 6.1.816.1.81
linuxlinux_kernel>= 6.2.0 < 6.3.46.3.4
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.