CVE-2023-53777 — Deadlock in Linux
Severity
4.7MEDIUM
No vectorEPSS
0.0%
top 90.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 9
Description
In the Linux kernel, the following vulnerability has been resolved:
erofs: kill hooked chains to avoid loops on deduplicated compressed images
After heavily stressing EROFS with several images which include a
hand-crafted image of repeated patterns for more than 46 days, I found
two chains could be linked with each other almost simultaneously and
form a loop so that the entire loop won't be submitted. As a
consequence, the corresponding file pages will remain locked forever.
It can be _only_ …
Affected Packages4 packages
▶CVEListV5linux/linux267f2492c8f71dac44399988b510f9bf6b074a51 — d3b39ea24835ac03da1a30f93ae7c05d55a40191+4
🔴Vulnerability Details
3OSV▶
CVE-2023-53777: In the Linux kernel, the following vulnerability has been resolved: erofs: kill hooked chains to avoid loops on deduplicated compressed images After h↗2025-12-09
GHSA▶
GHSA-v9mq-q8m3-5r3r: In the Linux kernel, the following vulnerability has been resolved:
erofs: kill hooked chains to avoid loops on deduplicated compressed images
After↗2025-12-09