CVE-2023-53732Linux vulnerability

6 documents5 sources
Severity
N/A
No vector
EPSS
0.0%
top 92.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 22

Description

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix NULL dereference in ni_write_inode Syzbot reports a NULL dereference in ni_write_inode. When creating a new inode, if allocation fails in mi_init function (called in mi_format_new function), mi->mrec is set to NULL. In the error path of this inode creation, mi->mrec is later dereferenced in ni_write_inode. Add a NULL check to prevent NULL dereference.

Affected Packages4 packages

Linuxlinux/linux_kernel5.15.05.15.113+2
Debianlinux/linux_kernel< 6.1.82-1+2
CVEListV5linux/linux4534a70b7056fd4b9a1c6db5a4ce3c98546b291ed4b74482529516477cf7b12502538e51827c699f+4
debiandebian/linux< linux 6.1.82-1 (bookworm)

🔴Vulnerability Details

3
OSV
fs/ntfs3: Fix NULL dereference in ni_write_inode2025-10-22
OSV
CVE-2023-53732: In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix NULL dereference in ni_write_inode Syzbot reports a NULL dereference2025-10-22
GHSA
GHSA-3rxh-rgj9-q9fq: In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix NULL dereference in ni_write_inode Syzbot reports a NULL dereferen2025-10-22

📋Vendor Advisories

2
Red Hat
kernel: fs/ntfs3: Fix NULL dereference in ni_write_inode2025-10-22
Debian
CVE-2023-53732: linux - In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: F...2023